CVE-2021-20782: CSRF
Published Jul 14, 2021
·Updated
Cross-site request forgery (CSRF) vulnerability in Software License Manager versions prior to 4.4.6 allows remote attackers to hijack the authentication of administrators via unspecified vectors.
Affected Software
1 affected component
Tipsandtricks-hq Software License Manager Wordpress<4.4.6
Event History
Jul 14, 2021
CVE Published
via MITRE·01:20 AM
Data Sourced
via MITRE·01:20 AM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2021-20782?
CVE-2021-20782 is a Cross-site request forgery (CSRF) vulnerability in Software License Manager versions prior to 4.4.6.
2
What is the severity of CVE-2021-20782?
The severity of CVE-2021-20782 is high, with a severity value of 8.8.
3
How does CVE-2021-20782 work?
CVE-2021-20782 allows remote attackers to hijack the authentication of administrators through unspecified vectors.
4
Which software versions are affected by CVE-2021-20782?
Software License Manager versions prior to 4.4.6 are affected by CVE-2021-20782.
5
How can I fix CVE-2021-20782?
To fix CVE-2021-20782, update to Software License Manager version 4.4.6 or later.