Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-20671

Invalid file validation on the upload feature in GROWI versions v4.2.2 allows a remote attacker with administrative privilege to overwrite the files on the server, which may lead to arbitrary code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.022
EPSS Ranking 83.8%
CVSS Severity
CVSS v3 Score 7.2
CVSS v2 Score 6.5
Products affected by CVE-2021-20671
  • Weseek » Growi » Version: 4.2.2
    cpe:2.3:a:weseek:growi:4.2.2


Contact Us

Shodan ® - All rights reserved