MaianAffiliate v.1.0: PHP Code Injection Vulnerability Enables Remote Code Execution

MaianAffiliate v.1.0: PHP Code Injection Vulnerability Enables Remote Code Execution

CVE-2021-41421 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N

A PHP code injection vulnerability in MaianAffiliate v.1.0 allows an authenticated attacker to gain RCE through the MaianAffiliate admin panel.

Learn more about our Web Application Penetration Testing UK.