Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Zhujie

#25198of 53,632
9.8Total CVSS
Vulnerabilities · 1
PT-2021-21736
9.8
2021-08-18
Apache · Apache Ofbiz · CVE-2021-37608
**Name of the Vulnerable Software and Affected Versions** Apache OFBiz versions prior to 17.12.08 **Description** The issue allows an attacker to execute remote commands due to an Unrestricted Upload of File with Dangerous Type vulnerability. This enables the attacker to potentially gain control over the system. **Recommendations** For Apache OFBiz versions prior to 17.12.08, upgrade to at least version 17.12.08 to resolve the issue. Alternatively, apply the patches available at the specified location to fix the vulnerability.