Studio-42 eLfinder 2.1.62 is vulnerable to Remote Code...
Critical severity
Unreviewed
Published
Oct 31, 2024
to the GitHub Advisory Database
•
Updated Nov 1, 2024
Description
Published by the National Vulnerability Database
Oct 31, 2024
Published to the GitHub Advisory Database
Oct 31, 2024
Last updated
Nov 1, 2024
Studio-42 eLfinder 2.1.62 is vulnerable to Remote Code Execution (RCE) as there is no restriction for uploading files with the .php8 extension.
References