High severity8.8NVD Advisory· Published Feb 22, 2021· Updated Jun 17, 2026
CVE-2021-27513
CVE-2021-27513
Description
The module admin_ITSM in EyesOfNetwork 5.3-10 allows remote authenticated users to upload arbitrary .xml.php files because it relies on "le filtre userside."
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:eyesofnetwork:eyesofnetwork:5.3-10:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:eyesofnetwork:eyesofnetwork:5.3-10:*:*:*:*:*:*:*
- (no CPE)range: 5.3-10
- EyesOfNetwork/EyesOfNetworkdescription
- Range: 5.3-10
- Range: 5.3-10
Patches
Vulnerability mechanics
References
2- github.com/EyesOfNetworkCommunity/eonweb/issues/87nvdPatchThird Party Advisory
- github.com/ArianeBlow/exploit-eyesofnetwork5.3.10/blob/main/PoC-BruteForceID-arbitraty-file-upload-RCE-PrivEsc.pynvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.