Количество 2
Количество 2
CVE-2021-40616
больше 3 лет назад
thinkcmf v5.1.7 has an unauthorized vulnerability. The attacker can modify the password of the administrator account with id 1 through the background user management group permissions. The use condition is that the background user management group authority is required.
CVSS3: 6.5
EPSS: Низкий
GHSA-v25c-8349-v2q3
больше 3 лет назад
Incorrect Authorization in thinkcmf
CVSS3: 6.5
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-40616 thinkcmf v5.1.7 has an unauthorized vulnerability. The attacker can modify the password of the administrator account with id 1 through the background user management group permissions. The use condition is that the background user management group authority is required. | CVSS3: 6.5 | 0% Низкий | больше 3 лет назад | |
GHSA-v25c-8349-v2q3 Incorrect Authorization in thinkcmf | CVSS3: 6.5 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу
20