Security Advisory
CVE-2021-20670
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Improper access control vulnerability in GROWI versions v4.2.2 and earlier allows a remote unauthenticated attacker to read the users personal information and/or servers internal information via unspecified vectors.