trung-tran-sts

1 exploit Active since Jul 2021
CVE-2021-23407 WRITEUP HIGH WRITEUP
elFinder.Net.Core < 1.2.4 - Path Traversal via Unsanitized File Name
This affects the package elFinder.Net.Core from 0 and before 1.2.4. The user-controlled file name is not properly sanitized before it is used to create a file system path.
CVSS 7.5