← Back to browse · API

CVE-2021-33353

Severity
CRITICAL
CVSS
9.8
EPSS
0.02188
Risk score
39.97
CISA KEV
No
PoC
No
Published
2023-03-08
Modified
2025-03-04
First seen
2026-08-07
Aliases
EUVD-2021-20060, GHSA-5RG7-XPV4-P4MJ
Products
n/a:n/a n/a
Sources
euvd EUVD-2021-20060

Description

Directory Traversal vulnerability in Wyomind Help Desk Magento 2 extension v.1.3.6 and before fixed in v.1.3.7 allows attacker to execute arbitrary code via the file attachment directory setting.

References