Description MasaCMS 7.2.1 is affected by a path traversal vulnerability in /index.cfm/_api/asset/image/. Remediation References CVE-2021-42183 Related Vulnerabilities WordPress Plugin GD Star Rating 'tpl_section' Parameter Cross-Site Scripting (1.9.16) WordPress Plugin Yet Another Photoblog Unspecified Vulnerability (1.10.6) WordPress 4.2.x Multiple Vulnerabilities (4.2 - 4.2.21) WordPress Plugin AI ChatBot Information Disclosure (4.8.9) WordPress Plugin bSuite Cross-Site Scripting (4.0.7) Severity High Classification CVE-2021-42183 CWE-22 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N Tags Missing Update Known Vulnerabilities