🚨 New security advisory:

CVE-2021-47936 affects multiple systems.

• Impact: Remote code execution or complete system compromise possible
• Risk: Attackers can gain full control of affected systems
• Mitigation: Patch immediately or isolate affected systems

Full breakdown:
https://www.yazoul.net/advisory/cve/cve-2021-47936-opencats-unauthenticated-rce

#CVE #SecurityPatching #HackerNews

OpenCATS unauthenticated RCE (CVE-2021-47936)

CVE-2021-47936: OpenCATS 0.9.4 unauthenticated RCE via PHP file upload to job application endpoint (CVSS 9.8). No patch available; remove the careers module or restrict upload directories.

Yazoul Security