CVE-2021-42093: High severity Zammad Zammad vulnerability
Published Oct 7, 2021
·Updated
An issue was discovered in Zammad before 4.1.1. An admin can execute code on the server via a crafted request that manipulates triggers.
Affected Software
1 affected component
Zammad Zammad<4.1.1
Event History
Oct 7, 2021
CVE Published
via MITRE·07:35 PM
Data Sourced
via MITRE·07:35 PM
Description
Data Sourced
via NVD·08:15 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue in Zammad?
The vulnerability ID for this issue in Zammad is CVE-2021-42093.
2
What is the severity of CVE-2021-42093?
The severity of CVE-2021-42093 is high (7.2).
3
How can an admin execute code on the server via the crafted request?
An admin can execute code on the server via a crafted request that manipulates triggers.
4
What is the affected software for CVE-2021-42093?
The affected software for CVE-2021-42093 is Zammad before version 4.1.1.
5
Is there a fix available for CVE-2021-42093?
Yes, the fix for CVE-2021-42093 is available in Zammad version 4.1.1.