High severity8.8NVD Advisory· Published Mar 10, 2022· Updated Jun 17, 2026
CVE-2021-43970
CVE-2021-43970
Description
An arbitrary file upload vulnerability exists in albumimages.jsp in Quicklert for Digium 10.0.0 (1043) via a .mp3;.jsp filename for a file that begins with audio data bytes. It allows an authenticated (low privileged) attacker to execute remote code on the target server within the context of application's permissions (SYSTEM).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Digium/Quicklert for Digiumdescription
Patches
Vulnerability mechanics
References
2- www.assurainc.com/assura-announces-discovery-of-two-vulnerabilities-in-quicklert-for-digium-switchvox/amp-on/nvdExploitThird Party Advisory
- quicklert.comnvdVendor Advisory
News mentions
0No linked articles in our index yet.