Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-81951
HistoryOct 09, 2021 - 12:00 a.m.

Zammad Elevation of Privilege Vulnerability

2021-10-0900:00:00
China National Vulnerability Database
www.cnvd.org.cn
7

0.001 Low

EPSS

Percentile

42.8%

Zammad is an open source web-based help desk/customer support system. an elevation of privilege vulnerability exists in versions of Zammad prior to 4.1.1. An attacker could exploit this vulnerability by sending a specially crafted request to modify other agent accounts to be able to log in with administrator privileges.

CPENameOperatorVersion
zammad zammadlt4.1.1

0.001 Low

EPSS

Percentile

42.8%

Related for CNVD-2021-81951