CVE-2021-3291

Publication date

2021-01-26 06:47:35

Family

mitre

State

PUBLISHED

Description

Zen Cart 1.5.7b allows admins to execute arbitrary OS commands by inspecting an HTML radio input element (within the modules edit page) and inserting a command.