Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-32541

Опубликовано: 28 мая 2021
Источник: nvd
CVSS3: 5.3
CVSS2: 5
EPSS Низкий

Описание

The CTS Web transaction system related to authentication and session management is implemented incorrectly, which allows remote unauthenticated attackers can send a large number of valid usernames, and force those logged-in account to log out, causing the user to be unable to access the services

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:sysjust:cts_web:*:*:*:*:*:*:*:*
Версия до 2021.3.24 (исключая)

EPSS

Процентиль: 57%
0.00348
Низкий

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 5.3
github
больше 3 лет назад

The CTS Web transaction system related to authentication and session management is implemented incorrectly, which allows remote unauthenticated attackers can send a large number of valid usernames, and force those logged-in account to log out, causing the user to be unable to access the services

EPSS

Процентиль: 57%
0.00348
Низкий

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-287