cve/2021/CVE-2021-23415.md
2025-09-29 21:09:30 +02:00

679 B

CVE-2021-23415

Description

This affects the package elFinder.AspNet before 1.1.1. The user-controlled file name is not properly sanitized before it is used to create a file system path.

POC

Reference

Github

No PoCs found on GitHub currently.