PT-2022-11398 · Unknown · Maianaffiliate

Published

2022-06-16

·

Updated

2023-08-08

·

CVE-2021-41421

CVSS v3.1

4.8

Medium

VectorAV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions MaianAffiliate version 1.0
Description A PHP code injection issue allows an authenticated attacker to gain remote code execution (RCE) through the admin panel.
Recommendations For MaianAffiliate version 1.0, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Unrestricted File Upload

Weakness Enumeration

Related Identifiers

CVE-2021-41421

Affected Products

Maianaffiliate