Security Advisory

CVE-2021-22949

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-09-23 12:40:45
Last updated 2024-08-03 18:58:26
Assigner hackerone
State PUBLISHED

Description

A CSRF in Concrete CMS version 8.5.5 and below allows an attacker to duplicate files which can lead to UI inconvenience, and exhaustion of disk space.Credit for discovery: "Solar Security CMS Research Team"