Security Advisory

CVE-2021-41185

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-10-26 14:45:13
Last updated 2024-08-04 03:08:31
Assigner GitHub_M
CVSS score 8.8
State PUBLISHED

Description

Mycodo is an environmental monitoring and regulation system. An exploit in versions prior to 8.12.7 allows anyone with access to endpoints to download files outside the intended directory. A patch has been applied and a release made. Users should upgrade to version 8.12.7. As a workaround, users may manually apply the changes from the fix commit.