CVE-2021-34254: Medium severity umbraco cms vulnerability
Published Jun 28, 2021
·Updated
Umbraco CMS before 7.15.7 is vulnerable to Open Redirection due to insufficient url sanitization on booting.aspx.
Affected Software
1 affected component
Umbraco Umbraco CMS<7.15.7
Event History
Jun 28, 2021
CVE Published
via MITRE·03:24 PM
Data Sourced
via MITRE·03:24 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this Umbraco CMS vulnerability?
The vulnerability ID of this Umbraco CMS vulnerability is CVE-2021-34254.
2
What is the severity level of CVE-2021-34254?
The severity level of CVE-2021-34254 is medium.
3
How does CVE-2021-34254 impact Umbraco CMS?
CVE-2021-34254 impacts Umbraco CMS by allowing open redirection due to insufficient URL sanitization on booting.aspx.
4
Which versions of Umbraco CMS are affected by CVE-2021-34254?
Umbraco CMS versions prior to 7.15.7 are affected by CVE-2021-34254.
5
How can I fix the CVE-2021-34254 vulnerability in Umbraco CMS?
To fix the CVE-2021-34254 vulnerability in Umbraco CMS, update to version 7.15.7 or later.