CVE-2021-31703
Published May 29, 2021Frontier ichris through 5.18 allows users to upload malicious executable files that might later be downloaded and run by any client user.
Vendor/product archive
2 CVEs tagged to frontiersoftware / ichris — 1 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.
Frontier ichris through 5.18 allows users to upload malicious executable files that might later be downloaded and run by any client user.
Frontier ichris through 5.18 mishandles making a DNS request for the hostname in the HTTP Host header, as demonstrated by submitting 127.0.0.1 multiple times for DoS.