cve/2021/CVE-2021-29660.md
2024-06-18 02:51:15 +02:00

705 B

CVE-2021-29660

Description

A Cross-Site Request Forgery (CSRF) vulnerability in en/cfg_setpwd.html in Softing AG OPC Toolbox through 4.10.1.13035 allows attackers to reset the administrative password by inducing the Administrator user to browse a URL controlled by an attacker.

POC

Reference

Github

No PoCs found on GitHub currently.