First published: Thu Mar 31 2022(Updated: )
A Remote Code Execution (RCE) vulnerability exists in Simple Client Management System 1.0 in create.php due to the failure to validate the extension of the file being sent in a request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Simple Client Management System Project Simple Client Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-43484 is critical, with a CVSS score of 9.8.
The affected software for CVE-2021-43484 is Simple Client Management System 1.0.
CVE-2021-43484 is a Remote Code Execution (RCE) vulnerability in Simple Client Management System 1.0 in create.php due to the failure to validate file extensions.
To fix CVE-2021-43484, apply the latest patch or update provided by Simple Client Management System Project.
Yes, there is a known exploit available for CVE-2021-43484. More information can be found at the following link: [Exploit-DB](https://www.exploit-db.com/exploits/50094)