CVE-2021-45786: Critical severity maccms vulnerability
Published Mar 16, 2022
·Updated
In maccms v10, an attacker can log in through /index.php/user/login in the "col" and "openid" parameters to gain privileges.
Affected Software
1 affected component
maccms Maccms=10.0
Event History
Mar 16, 2022
CVE Published
via MITRE·12:29 PM
Data Sourced
via MITRE·12:29 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2021-45786.
2
What is the title of this vulnerability?
The title of this vulnerability is 'In maccms v10 an attacker can log in through /index.php/user/login in the col and openid parameters …'.
3
What is the description of this vulnerability?
The description of this vulnerability is 'In maccms v10, an attacker can log in through /index.php/user/login in the "col" and "openid" parameters to gain privileges.'
4
What software is affected by this vulnerability?
The Maccms v10 software with version 10.0 is affected by this vulnerability.
5
What is the severity of this vulnerability?
The severity of this vulnerability is rated as critical with a CVSS score of 9.8.