ID EDB-ID-50468
CVSS 3.0 8.8
Cloudbric Score
Cloudbric Detection Yes
Vulnerability Type RCE
Published Date 2021-11-02
Updated Date 2022-01-14
Vendor GMPC21
Description The "export" feature in various parts of the application is vulnerable. It is a feature made for the information in the tables to be exported to the server and imported later when required. Export operations contain "file_name" parameter. This parameter is assigned as a variable between the server commands on the backend side. It allows command injection with preventions bypass operation.
