← Back to CVE List

CVE-2021-26551

Published: 2021-02-09T20:15Z
Last Modified: 2024-11-21T05:56Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An issue was discovered in SmartFoxServer 2.17.0. An attacker can execute arbitrary Python code, and bypass the javashell.py protection mechanism, by creating /config/ConsoleModuleUnlock.txt and editing /config/admin/admintool.xml to enable the Console module. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt