First published: Thu Jan 13 2022(Updated: )
jpress v4.2.0 admin panel provides a function through which attackers can modify the template and inject some malicious code.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
openMairie Openpresse | =4.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-45806 is a vulnerability in jpress v4.2.0 admin panel that allows attackers to modify the template and inject malicious code.
The severity of CVE-2021-45806 is high with a CVSS score of 8.8.
jpress v4.2.0 is affected by CVE-2021-45806.
An attacker can exploit CVE-2021-45806 by using the function provided by the admin panel to modify the template and inject malicious code.
Yes, you can find references for CVE-2021-45806 at the following links: [http://jpress.com](http://jpress.com), [https://github.com/JPressProjects/jpress](https://github.com/JPressProjects/jpress), [https://github.com/JPressProjects/jpress/issues/166](https://github.com/JPressProjects/jpress/issues/166).