cve/2021/CVE-2021-39458.md
2024-05-25 21:48:12 +02:00

747 B

CVE-2021-39458

Description

Triggering an error page of the import process in Yakamara Media Redaxo CMS version 5.12.1 allows an authenticated CMS user has to alternate the files of a vaild file backup. This leads of leaking the database credentials in the environment variables.

POC

Reference

Github