ZeroHour

CVE-2021-25991

PoC
CVSS 3.1
7.3 high
EPSS
<1%p55
Published
()
Modified
Description

In Ifme, versions v5.0.0 to v7.32 are vulnerable against an improper access control, which makes it possible for admins to ban themselves leading to their deactivation from Ifme account and complete loss of admin access to Ifme.

Vendors
if-me
Products
ifme
Weakness
CWE-284
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:H

In the news

No ingested article mentions this CVE yet.