AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2021-43970

HIGH · CVSS 8.8 EPSS 1.78%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-03-10 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 8.8. It may be remotely exploitable.

CVE
CVE-2021-43970
Severity
HIGH
CVSS
8.8
EPSS
1.78%

Original NVD Description

An arbitrary file upload vulnerability exists in albumimages.jsp in Quicklert for Digium 10.0.0 (1043) via a .mp3;.jsp filename for a file that begins with audio data bytes. It allows an authenticated (low privileged) attacker to execute remote code on the target server within the context of application's permissions (SYSTEM).

Related CVEs

Other vulnerabilities affecting the same vendor(s)