Executive brief
Cobbler before 3.3.0 allows arbitrary file write operations via upload_log_data.
Affected products
- PyPI cobbler
Junglewise Threat Intelligence
CVE-2021-40324 · Severity: low · CVSS 3.1 · Published 2021-10-04
Technologies: cobbler (PyPI). Vendors: PyPI.
Cobbler before 3.3.0 allows arbitrary file write operations via upload_log_data.