Invalid file validation on the upload feature in GROWI versions v4.2.2 allows a remote attacker with administrative privilege to overwrite the files on the server, which may lead to arbitrary code execution.
| Software | From | Fixed in |
|---|---|---|
| weseek / growi | 4.2.2 | 4.2.2.x |