CVE-2021-32543
—CVSS 3.1
5.4 medium
EPSS
<1%p53
Published
()
Modified
Description
The CTS Web transaction system related to authentication management is implemented incorrectly. After login, remote attackers can manipulate cookies to access other accounts and trade in the stock market with spoofed identity.
- Vendors
- sysjust
- Products
- cts web
- Weakness
- CWE-287
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
In the news0 stories
No ingested article mentions this CVE yet.