Beveiligingsadvies

CVE-2021-20786

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-07-28 00:45:27
Laatst bijgewerkt 2024-08-03 17:53:22
Toegewezen door jpcert
CVSS-score geen score
Status PUBLISHED

Beschrijving

Cross-site request forgery (CSRF) vulnerability in GroupSession (GroupSession Free edition from ver2.2.0 to the version prior to ver5.1.0, GroupSession byCloud from ver3.0.3 to the version prior to ver5.1.0, and GroupSession ZION from ver3.0.3 to the version prior to ver5.1.0) allows a remote attacker to hijack the authentication of administrators via a specially crafted URL.