60
CVE-2021-27730
—CVSS 3.1
9.8 critical
EPSS
1%p71
Published
()
Modified
Description
Accellion FTA 9_12_432 and earlier is affected by argument injection via a crafted POST request to an admin endpoint. The fixed version is FTA_9_12_444 and later.
- Vendors
- accellion
- Products
- fta
- Weakness
- CWE-74
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H