CVE-2021-42651

A Server Side Template Injection (SSTI) vulnerability in Pentest-Collaboration-Framework v1.0.8 allows an authenticated remote attacker to execute arbitrary code through /project/PROJECTNAME/reports/.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:pentest_collaboration_framework_project:pentest_collaboration_framework:1.0.8:*:*:*:*:*:*:*

Information

Published : 2022-05-11 08:15

Updated : 2022-05-19 06:58


NVD link : CVE-2021-42651

Mitre link : CVE-2021-42651


JSON object : View

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')

Advertisement

dedicated server usa

Products Affected

pentest_collaboration_framework_project

  • pentest_collaboration_framework