CVE-2021-42671: High severity engineers online portal vulnerability
An incorrect access control vulnerability exists in Sourcecodester Engineers Online Portal in PHP in niamunozmonitoringsystem/admin/uploads. An attacker can leverage this vulnerability in order to bypass access controls and access all the files uploaded to the web server without the need of authentication or authorization.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-42671 vulnerability?
CVE-2021-42671 is an incorrect access control vulnerability in Sourcecodester Engineers Online Portal in PHP, allowing unauthorized access to uploaded files.
How severe is CVE-2021-42671 vulnerability?
CVE-2021-42671 has a severity score of 7.5, indicating a high level of risk.
How can an attacker exploit CVE-2021-42671 vulnerability?
An attacker can exploit CVE-2021-42671 by circumventing access controls and gaining unauthorized access to all the files uploaded to the web server.
Is there a fix for CVE-2021-42671 vulnerability?
At this time, there is no known fix or patch for CVE-2021-42671 vulnerability. It is recommended to disable or restrict access to the vulnerable component or update to a patched version, if available.
Where can I find more information about CVE-2021-42671 vulnerability?
More information about CVE-2021-42671 vulnerability can be found at the following references: [1] [2] [3]