CVE-2021-32243: Malicious File Upload
Published Jun 16, 2021
·Updated
FOGProject v1.5.9 is affected by a File Upload RCE (Authenticated).
Affected Software
1 affected component
fogproject fogproject=1.5.9
Event History
Jun 16, 2021
CVE Published
via MITRE·08:37 PM
Data Sourced
via MITRE·08:37 PM
Description
Frequently Asked Questions
1
What is CVE-2021-32243?
CVE-2021-32243 is a vulnerability in FOGProject version 1.5.9 that allows remote code execution through a file upload process, but authentication is required.
2
How severe is CVE-2021-32243?
CVE-2021-32243 has a severity rating of high, with a CVSS score of 8.8.
3
How does CVE-2021-32243 affect FOGProject?
FOGProject version 1.5.9 is affected by CVE-2021-32243, which allows authenticated users to execute remote code through file uploads.
4
Is there a fix for CVE-2021-32243?
As of now, there is no official fix for CVE-2021-32243. It is recommended to monitor updates from FOGProject for a patch or mitigation.
5
Where can I find more information about CVE-2021-32243?
You can find more information about CVE-2021-32243 on the official GitHub issue page for FOGProject: https://github.com/FOGProject/fogproject/issues/422