CVE-2021-4033: Cross-Site Request Forgery (CSRF) in kevinpapst/kimai2
Published Dec 9, 2021
·Updated
kimai2 is vulnerable to Cross-Site Request Forgery (CSRF)
Affected Software
1 affected component
Kimai Kimai 2<1.16.7
Remediation
Event History
Dec 9, 2021
CVE Published
via MITRE·07:55 PM
Data Sourced
via MITRE·07:55 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for kimai2?
The vulnerability ID for kimai2 is CVE-2021-4033.
2
What is the title of this vulnerability?
The title of this vulnerability is 'kimai2 is vulnerable to Cross-Site Request Forgery (CSRF).'
3
What is the severity rating for CVE-2021-4033?
The severity rating for CVE-2021-4033 is medium with a value of 6.5.
4
What is the affected software for CVE-2021-4033?
The affected software for CVE-2021-4033 is Kimai Kimai 2 version up to exclusive 1.16.7.
5
How can I fix the vulnerability in kimai2?
To fix the vulnerability in kimai2, you should update to a version higher than 1.16.7.