cve/2021/CVE-2021-36532.md
2025-09-29 21:09:30 +02:00

655 B

CVE-2021-36532

Description

Race condition vulnerability discovered in portfolioCMS 1.0 allows remote attackers to run arbitrary code via fileExt parameter to localhost/admin/uploads.php.

POC

Reference

Github

No PoCs found on GitHub currently.