CVE-2021-42084: Medium severity Zammad Zammad vulnerability
An issue was discovered in Zammad before 4.1.1. An attacker with valid agent credentials may send a series of crafted requests that cause an endless loop and thus cause denial of service.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-42084?
CVE-2021-42084 is a vulnerability in Zammad before version 4.1.1 that allows an attacker with valid agent credentials to cause a denial of service (DoS) by creating an endless loop.
How does CVE-2021-42084 affect Zammad?
CVE-2021-42084 affects Zammad versions prior to 4.1.1 and can be exploited by an attacker who has valid agent credentials.
What is the severity of CVE-2021-42084?
The severity of CVE-2021-42084 is medium (CVSS score of 6.5).
How can an attacker exploit CVE-2021-42084?
An attacker with valid agent credentials can exploit CVE-2021-42084 by sending a series of crafted requests that cause an endless loop.
How can I fix CVE-2021-42084?
To fix CVE-2021-42084, you need to update Zammad to version 4.1.1 or later.