High severity8.8NVD Advisory· Published Nov 11, 2021· Updated Jun 17, 2026
CVE-2021-43397
CVE-2021-43397
Description
LiquidFiles before 3.6.3 allows remote attackers to elevate their privileges from Admin (or User Admin) to Sysadmin.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:liquidfiles:liquidfiles:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:liquidfiles:liquidfiles:*:*:*:*:*:*:*:*range: <3.6.3
- (no CPE)range: <3.6.3
- LiquidFiles/LiquidFilesdescription
Patches
Vulnerability mechanics
References
5- packetstormsecurity.com/files/164997/LiquidFiles-3.5.13-Privilege-Escalation.htmlnvdExploitThird Party AdvisoryVDB Entry
- seclists.org/fulldisclosure/2021/Nov/40nvdExploitMailing ListThird Party Advisory
- seclists.org/fulldisclosure/2021/Nov/52nvdExploitMailing ListThird Party Advisory
- forum.liquidfiles.com/forums/news.6/nvdVendor Advisory
- man.liquidfiles.com/release_notes/version_3-6-x.htmlnvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.