CRITICAL
An issue in aliyundrive-webdav v.2.3.3 and before allows a remote attacker to execute arbitrary code via a crafted payload to the sid parameter in the action_query_qrcode component
Published Mar 29, 2024
9.8
CRITICALCVSS 3.1
EPSS 1.18%
Description
Affected products
Remediation
References (7)
Change history (0)
No recorded changes yet.