Description
An issue was discovered in Cuppa CMS Versions Before 31 Jan 2021 allows authenticated attackers to gain escalated privileges via a crafted POST request using the user_group_id_field parameter.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-26707 | An issue was discovered in Cuppa CMS Versions Before 31 Jan 2021 allows authenticated attackers to gain escalated privileges via a crafted POST request using the user_group_id_field parameter. |
References
| Link | Providers |
|---|---|
| https://github.com/CuppaCMS/CuppaCMS/issues/12 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T16:53:17.490Z
Reserved: 2021-02-01T00:00:00.000Z
Link: CVE-2021-3376
No data.
Status : Modified
Published: 2021-12-14T14:15:09.367
Modified: 2024-11-21T06:21:22.867
Link: CVE-2021-3376
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD