CVE-2021-33831

Publication date

2021-09-07 05:09:31

Family

mitre

State

PUBLISHED

Description

api/account/register in the TH Wildau COVID-19 Contact Tracing application through 2021-09-01 has Incorrect Access Control. An attacker can interfere with tracing of infection chains by creating 500 random users within 2500 seconds.