cve/2021/CVE-2021-39458.md
2024-06-18 02:51:15 +02:00

747 B

CVE-2021-39458

Description

Triggering an error page of the import process in Yakamara Media Redaxo CMS version 5.12.1 allows an authenticated CMS user has to alternate the files of a vaild file backup. This leads of leaking the database credentials in the environment variables.

POC

Reference

Github