ZeroHour

CVE-2021-37394

PoC
CVSS 3.1
8.8 high
EPSS
1%p66
Published
()
Modified
Description

In RPCMS v1.8 and below, attackers can interact with API and change variable "role" to "admin" to achieve admin user registration.

Vendors
rpcms
Products
rpcms
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.