cve/2021/CVE-2021-29995.md
2024-06-18 02:51:15 +02:00

866 B

CVE-2021-29995

Description

A Cross Site Request Forgery (CSRF) issue in Server Console in CloverDX through 5.9.0 allows remote attackers to execute any action as the logged-in user (including script execution). The issue is resolved in CloverDX 5.10, CloverDX 5.9.1, CloverDX 5.8.2, and CloverDX 5.7.1.

POC

Reference

Github

No PoCs found on GitHub currently.