Publication Date: |
2022-01-11 |
Last Update: |
2022-04-12 |
Current Version: |
V1.2 |
CVSS v3.1 Base Score: |
8.8 |
- For COMOS V10.4.1 / V10.3.3.3 and CVE-2021-37194: Use the new whitelisting feature, to specify the filetypes that are allowed to be uploaded
- CVE-2021-37196 can be mitigated in all versions by making the root directory of the web server read only
-
Sandro Poppi
for reporting the vulnerabilities