CVE-2021-29281 Information
Jul 08, 2022
cve
Description
File upload vulnerability in GFI Mail Archiver versions up to and including 15.1 via insecure implementation of Telerik Web UI plugin which is affected by CVE-2014-2217 and CVE-2017-11317.
Reference
https://owasp.org/www-community/vulnerabilities/Unrestricted_File_Upload https://www.exploit-db.com/exploits/50181 https://cwe.mitre.org/data/definitions/434.html https://www.gfi.com/products-and-solutions/network-security-solutions/gfi-archiver https://aminbohio.com/gfi-mail-archiver-15-1-telerik-ui-component-arbitrary-file-upload-unauthenticated-exploit/
Share on: