diff --git a/2021/36xxx/CVE-2021-36471.json b/2021/36xxx/CVE-2021-36471.json index 9295104037c..34df6cee006 100644 --- a/2021/36xxx/CVE-2021-36471.json +++ b/2021/36xxx/CVE-2021-36471.json @@ -34,7 +34,7 @@ "description_data": [ { "lang": "eng", - "value": "Directory Traversal vulnerability in AdminLTE 3.1.0 allows remote attackers to gain escalated privilege and view sensitive information via /admin/index2.html, /admin/index3.html URIs." + "value": "** DISPUTED ** Directory Traversal vulnerability in AdminLTE 3.1.0 allows remote attackers to gain escalated privilege and view sensitive information via /admin/index2.html, /admin/index3.html URIs. Note: AdminLTE developers dispute that this a weakness with AdminLTE and is instead a misconfiguration error on various websites by the website developers." } ] }, @@ -56,6 +56,11 @@ "refsource": "MISC", "name": "https://gist.github.com/cybersaki/31ffe679a5552c1047164e3a5b01c2fd", "url": "https://gist.github.com/cybersaki/31ffe679a5552c1047164e3a5b01c2fd" + }, + { + "refsource": "MISC", + "name": "https://github.com/ColorlibHQ/AdminLTE/issues/4948", + "url": "https://github.com/ColorlibHQ/AdminLTE/issues/4948" } ] }