CVE-2021-36122

CVE-2021-36122

An issue was discovered in Echo ShareCare 8.15.5. The UnzipFile feature in Access/EligFeedParse_Sup/UnzipFile_Upd.cfm is susceptible to a command argument injection vulnerability when processing remote input in the zippass parameter from an authenticated user, leading to the ability to inject arbitrary arguments to 7z.exe.

Source: CVE-2021-36122

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다