Security Advisory

CVE-2021-40101

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-11-30 19:38:32
Last updated 2024-08-04 02:27:31
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

An issue was discovered in Concrete CMS before 8.5.7. The Dashboard allows a user's password to be changed without a prompt for the current password.