GITHUBEXPLOIT 9.8 CRITICAL

Exploit for OS Command Injection in Std42 Elfinder_84295AD6-4CA5-52DF-949D-5243E681C6BA

9.8 / 10
CRITICAL
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Description

CVE-2019-9194 — elFinder Command Injection PoC Command injection vulnerability in elFinder = 2.1.47 via the PHP connector component. Allows unauthenticated remote code execution as the web server user. How it works Uploads a valid JPEG with a malicious...
Visit Original Source

Basic Information

ID 84295AD6-4CA5-52DF-949D-5243E681C6BA
Published Feb 18, 2026 at 00:40
Modified Feb 18, 2026 at 00:47

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.