References https://www.twcert.org.tw/en/cp-139-5396-e0551-2.html https://nvd.nist.gov/vuln/detail/CVE-2021-44159 https://www.clouddefense.ai/cve/2021/CVE-2021-44159 https://echelongraph.io/pulse/CVE-2021-44159 https://www.twcert.org.tw/tw/cp-132-5395-eee40-1.html https://www.twcert.org.tw/newepaper/cp-151-5395-eee40-3.html https://www.cve.org/CVERecord?id=CVE-2021-44159 https://cve.imfht.com/detail/CVE-2021-44159
Related VulnerabilitiesPoCCVE-2026-5524: Divi Form Builder <=5.1.8 - Unauthenticated Arbitrary File Upload RCEPoCCVE-2026-32475: Elementor Pro <=4.2.1 - Unauthenticated Arbitrary File Upload via Form HandlerFileRise /uploads 文件读取漏洞(CVE-2026-25231)鎧應科技|CMS-WS/CMS-SE/SMP - Arbitrary File Upload美麗島安全科技|4MOSAn 管理中心 - Arbitrary File Read美麗島安全科技|4MOSAn GCB Doctor - OS Command Injection網韻資訊|NewSiteServer (NSS)新式校園網站系統 - Arbitrary File UploadPoCCVE-2026-0558: LolLMS <= 2.2.0 - Unauthenticated File UploadPoCCVE-2026-13001: Podlove Podcast Publisher <= 4.5.1 - Arbitrary File UploadPoCCVE-2026-57827: RSFiles! for Joomla - Arbitrary File UploadPoCmonitorr-file-upload: Monitorr Services Configuration - Arbitrary File Upload二一零零科技|公文管理系統 - Arbitrary File UploadPoCCVE-2024-56064: WP SuperBackup <= 2.3.3 - Unauthenticated Arbitrary File Upload to RCE