CVE-2021-20671

Publication date

2021-03-10 09:20:34

Family

jpcert

State

PUBLISHED

Description

Invalid file validation on the upload feature in GROWI versions v4.2.2 allows a remote attacker with administrative privilege to overwrite the files on the server, which may lead to arbitrary code execution.