#VU55862 Code Injection in Contao - CVE-2021-37626
Published: August 16, 2021
Contao
Contao
Description
The vulnerability allows a remote local to execute arbitrary code on the target system.
The vulnerability exists due to improper input validation. A remote administrator can load PHP files and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.