Vulnerability Description
An unrestricted file upload on Simple Image Gallery Web App can be exploited to upload a web shell and executed to gain unauthorized access to the server hosting the web app.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Simple Image Gallery Web App Project | Simple Image Gallery Web App | - |
Related Weaknesses (CWE)
References
- https://github.com/dumpling-soup/Simple-Image-Gallery-Web-App/blob/main/README.mExploitThird Party Advisory
- https://github.com/dumpling-soup/Simple-Image-Gallery-Web-App/blob/main/README.mExploitThird Party Advisory
FAQ
What is CVE-2021-38753?
CVE-2021-38753 is a vulnerability with a CVSS score of 9.8 (CRITICAL). An unrestricted file upload on Simple Image Gallery Web App can be exploited to upload a web shell and executed to gain unauthorized access to the server hosting the web app.
How severe is CVE-2021-38753?
CVE-2021-38753 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2021-38753?
Check the references section above for vendor advisories and patch information. Affected products include: Simple Image Gallery Web App Project Simple Image Gallery Web App.