Vulnerability Description
File Upload vulnerability in PHPOK 5.7.140 allows remote attackers to run arbitrary code and gain escalated privileges via crafted zip file upload.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Phpok | Phpok | 5.7.140 |
Related Weaknesses (CWE)
References
- https://github.com/HolaAsuka/CVE/issues/1ExploitIssue Tracking
- https://github.com/HolaAsuka/CVE/issues/1ExploitIssue Tracking
FAQ
What is CVE-2021-34076?
CVE-2021-34076 is a vulnerability with a CVSS score of 8.8 (HIGH). File Upload vulnerability in PHPOK 5.7.140 allows remote attackers to run arbitrary code and gain escalated privileges via crafted zip file upload.
How severe is CVE-2021-34076?
CVE-2021-34076 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-34076?
Check the references section above for vendor advisories and patch information. Affected products include: Phpok Phpok.