GROWI RCE Fullchain (XSS to RCE)

preview_player
Показать описание

This is the chained version of three vulnerabilities
1. Stored XSS (CVE-2021-20829)
2. Arbitrary File Write to execute the server-side code (CVE-2021- 20671)
3. Environment bug
Рекомендации по теме