ZeroHour

CVE-2021-32543

CVSS 3.1
5.4 medium
EPSS
<1%p53
Published
()
Modified
Description

The CTS Web transaction system related to authentication management is implemented incorrectly. After login, remote attackers can manipulate cookies to access other accounts and trade in the stock market with spoofed identity.

Vendors
sysjust
Products
cts web
Weakness
CWE-287
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.