CVE-2021-37221: Malicious File Upload
A file upload vulnerability exists in Sourcecodester Customer Relationship Management System 1.0 via the account update option & customer create option, which could let a remote malicious user upload an arbitrary php file. .
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-37221?
CVE-2021-37221 is considered a critical severity vulnerability due to its potential for remote code execution.
How do I fix CVE-2021-37221?
To fix CVE-2021-37221, update the Sourcecodester Customer Relationship Management System to the latest version that addresses this vulnerability.
What kind of attacks can CVE-2021-37221 facilitate?
CVE-2021-37221 can facilitate arbitrary file upload attacks, allowing attackers to upload malicious scripts.
Who is affected by CVE-2021-37221?
Any users running Sourcecodester Customer Relationship Management System version 1.0 are affected by CVE-2021-37221.
What is the exploitability of CVE-2021-37221?
CVE-2021-37221 is easily exploitable by a remote attacker with no authentication required to trigger the vulnerability.