CVE-2021-42840 | SuiteCRM up to 7.11.18 Log File Name Setting logger_file_name code injection (EDB-50531)
A vulnerability was found in SuiteCRM up to 7.11.18. It has been classified as critical. This affects an unknown part of the component Log File Name Setting. The manipulation of the argument logger_file_name leads to code injection.
This vulnerability is uniquely identified as CVE-2021-42840. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.