High severity8.8NVD Advisory· Published Oct 21, 2021· Updated Jun 17, 2026
CVE-2021-41790
CVE-2021-41790
Description
An issue was discovered in Hyland org.alfresco:alfresco-content-services through 7.0.1.2. Script Action execution allows executing scripts uploaded outside of the Data Dictionary. This could allow a logged-in attacker to execute arbitrary code inside a sandboxed environment.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Hyland/alfresco-content-servicesdescription
- Range: <=7.0.1.2
- Range: <=7.0.1.2
Patches
Vulnerability mechanics
References
2- github.com/Alfresco/acs-packaging/blob/master/DISCLOSURES.mdnvdThird Party Advisory
- www.themissinglink.com.aunvdThird Party Advisory
News mentions
0No linked articles in our index yet.