SEPTEMBER 28, 2026
Live Feed
Back to database
Case File

CVE-2021-44159

CRITICAL · CVSS 9.8 EPSS 3.41%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2021-12-20 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. It may be remotely exploitable.

CVE
CVE-2021-44159
Severity
CRITICAL
CVSS
9.8
EPSS
3.41%

Original NVD Description

4MOSAn GCB Doctor’s file upload function has improper user privilege control. A remote attacker can upload arbitrary files including webshell files without authentication and execute arbitrary code in order to perform arbitrary system operations or deny of service attack.

Related CVEs

Other vulnerabilities affecting the same vendor(s)