Lucene search

K
osvGoogleOSV:CVE-2021-45347
HistoryFeb 14, 2022 - 7:15 p.m.

CVE-2021-45347

2022-02-1419:15:07
Google
osv.dev
4

7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

33.9%

An Incorrect Access Control vulnerability exists in zzcms 8.2, which lets a malicious user bypass authentication by changing the user name in the cookie to use any password.

CPENameOperatorVersion
zzcmseq7.0
zzcmseq8.1
zzcmseq7.1
zzcmseq7.2
zzcmseq8.2
zzcmseq8.0

7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

33.9%

Related for OSV:CVE-2021-45347