9.8
CVSSv3

CVE-2021-42967

Published: 13/05/2022 Updated: 13/09/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Unrestricted file upload in /novel-admin/src/main/java/com/java2nb/common/controller/FileController.java in novel-plus all versions allows allows an malicious user to upload malicious JSP files.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

xxyopen novel-plus -