CVE-2021-26639 Information

Description

This vulnerability is caused by the lack of validation of input values for specific functions if WISA Smart Wing CMS. Remote attackers can use this vulnerability to leak all files in the server without logging in system.

Reference

https://www.krcert.or.kr/krcert/secNoticeView.do?bulletin_writing_sequence=66875

Share on: