Aller au contenu

Fiche vulnérabilité

CVE-2021-37105 : faille élevée FusionCompute (CVSS 7.5)

Description

There is an improper file upload control vulnerability in FusionCompute 6.5.0, 6.5.1 and 8.0.0. Due to the improper verification of file to be uploaded and does not strictly restrict the file access path, attackers may upload malicious files to the device, resulting in the service abnormal.

En bref

Sévérité
Élevée (CVSS 7.5)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitation active
Non signalée par la CISA
Publication
28 sept. 2021
Dernière mise à jour
4 août 2024

Produits concernés

  • FusionCompute

Références

Rechercher une autre vulnérabilité dans la base CVE