High severity8.8NVD Advisory· Published Mar 1, 2021· Updated Jun 17, 2026
CVE-2021-26704
CVE-2021-26704
Description
EPrints 3.4.2 allows remote attackers to execute arbitrary commands via crafted input to the verb parameter in a cgi/toolbox/toolbox URI.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- EPrints/EPrintsdescription
Patches
Vulnerability mechanics
References
3- files.eprints.org/2548/nvdPatchVendor Advisory
- files.eprints.org/2549/nvdPatchVendor Advisory
- github.com/grymer/CVE/blob/master/eprints_security_review.pdfnvdExploitPatchThird Party Advisory
News mentions
0No linked articles in our index yet.