First published: Thu May 05 2022(Updated: )
A command execution vulnerability exists in jfinal_cms 5.0.1 via com.jflyfox.component.controller.Ueditor.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Jflyfox Jfinal Cms | =5.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-42242 is critical with a score of 9.8.
The affected software for CVE-2021-42242 is Jflyfox Jfinal Cms version 5.0.1.
To fix the command execution vulnerability in jfinal_cms 5.0.1 (CVE-2021-42242), upgrade to a secure version or apply the official patch provided by the vendor.
Yes, there are known exploits for CVE-2021-42242. It is important to take immediate action to protect vulnerable systems.
You can find more information about CVE-2021-42242 at the following reference: https://github.com/jflyfox/jfinal_cms/issues/28