CVE-2021-32073: CSRF
DedeCMS V5.7 SP2 contains a CSRF vulnerability that allows a remote attacker to send a malicious request to to the web manager allowing remote code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-32073?
The severity of CVE-2021-32073 is high with a score of 8.8 out of 10.
What is the vulnerability description of CVE-2021-32073?
CVE-2021-32073 is a CSRF vulnerability in DedeCMS V5.7 SP2 that allows a remote attacker to send a malicious request to the web manager, resulting in remote code execution.
Which software versions of DedeCMS are affected by CVE-2021-32073?
DedeCMS version 5.7 SP2 is affected by CVE-2021-32073.
How can an attacker exploit CVE-2021-32073?
An attacker can exploit CVE-2021-32073 by sending a specially crafted request to the web manager of DedeCMS, which can lead to remote code execution.
Is there a fix available for CVE-2021-32073?
At the moment, there is no known fix available for CVE-2021-32073. It is recommended to implement strict access controls and consider upgrading to a newer version of DedeCMS when a fix becomes available.