add CVE-2021-3378

add CVE-2021-3378
This commit is contained in:
corp0ra1 2021-07-22 17:56:35 +08:00 committed by GitHub
parent 208ae11369
commit e192bd146e
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
2 changed files with 1 additions and 1 deletions

Binary file not shown.

Before

Width:  |  Height:  |  Size: 1.2 MiB

After

Width:  |  Height:  |  Size: 1.3 MiB

View File

@ -1,4 +1,4 @@
# FortiLogger Unauth Arbitrary File Upload(CVE_2021_3378) # FortiLogger Unauth Arbitrary File Upload(CVE-2021-3378)
FortiLogger 4.4.2.2 is affected by Arbitrary File Upload by sending a \"Content-Type: image/png\" header to Config/SaveUploadedHotspotLogoFile and then visiting Assets/temp/hotspot/img/logohotspot.asp. FortiLogger 4.4.2.2 is affected by Arbitrary File Upload by sending a \"Content-Type: image/png\" header to Config/SaveUploadedHotspotLogoFile and then visiting Assets/temp/hotspot/img/logohotspot.asp.