ZeroHour

CVE-2021-29368

PoC
CVSS 3.1
8.8 high
EPSS
<1%p52
Published
()
Modified
Description

Session fixation vulnerability in CuppaCMS thru commit 4c9b742b23b924cf4c1f943f48b278e06a17e297 on November 12, 2019 allows attackers to gain access to arbitrary user sessions.

Vendors
cuppacms
Products
cuppacms
Weakness
CWE-384
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.