CVE-2021-41976

Publication date

2021-10-08 15:15:44

Family

twcert

State

PUBLISHED

Description

Tad Uploader edit book list function is vulnerable to authorization bypass, thus remote attackers can use the function to amend the folder names in the book list without logging in.