Security Advisory

CVE-2021-21804

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-07-16 10:34:02
Last updated 2024-08-03 18:23:29
Assigner talos
State PUBLISHED

Description

A local file inclusion (LFI) vulnerability exists in the options.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020). A specially crafted HTTP request can lead to arbitrary PHP code execution. An attacker can send a crafted HTTP request to trigger this vulnerability.