4.9
CVSSv3

CVE-2021-32752

Published: 09/07/2021 Updated: 22/07/2021
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 4.9 | Impact Score: 3.6 | Exploitability Score: 1.2
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

Ether Logs is a package that allows one to check one's logs in the Craft 3 utilities section. A vulnerability was found in versions before 3.0.4 that allowed authenticated admin users to access any file on the server. The vulnerability has been fixed in version 3.0.4. As a workaround, one may disable the plugin if untrustworthy sources have admin access.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ethercreative logs