Vulnerability Description
ThinkUp 2.0-beta.10 is affected by a path manipulation vulnerability in Smarty.class.php. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Thinkupapp | Thinkup | 2.0 |
Related Weaknesses (CWE)
References
- https://github.com/ThinkUpLLC/ThinkUp/issues/2289ExploitIssue TrackingThird Party Advisory
- https://github.com/ThinkUpLLC/ThinkUp/issues/2289ExploitIssue TrackingThird Party Advisory
FAQ
What is CVE-2021-43674?
CVE-2021-43674 is a vulnerability with a CVSS score of 9.8 (CRITICAL). ThinkUp 2.0-beta.10 is affected by a path manipulation vulnerability in Smarty.class.php. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
How severe is CVE-2021-43674?
CVE-2021-43674 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2021-43674?
Check the references section above for vendor advisories and patch information. Affected products include: Thinkupapp Thinkup.