Lucene search

K
prionPRIOn knowledge basePRION:CVE-2021-40108
HistorySep 27, 2021 - 1:15 p.m.

Cross site request forgery (csrf)

2021-09-2713:15:00
PRIOn knowledge base
www.prio-n.com
4

8.6 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

30.9%

An issue was discovered in Concrete CMS through 8.5.5. The Calendar is vulnerable to CSRF. ccm_token is not verified on the ccm/calendar/dialogs/event/add/save endpoint.

CPENameOperatorVersion
concrete_cmslt8.5.6

8.6 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

30.9%

Related for PRION:CVE-2021-40108