Security Advisory

CVE-2021-20745

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-06-28 00:50:33
Last updated 2024-08-03 17:53:21
Assigner jpcert
State PUBLISHED

Description

Inkdrop versions prior to v5.3.1 allows an attacker to execute arbitrary OS commands on the system where it runs by loading a file or code snippet containing an invalid iframe into Inkdrop.