Security Advisory

CVE-2021-40101

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-11-30 19:38:32
Last updated 2024-08-04 02:27:31
Assigner mitre
State PUBLISHED

Description

An issue was discovered in Concrete CMS before 8.5.7. The Dashboard allows a users password to be changed without a prompt for the current password.