CVE-2021-27903
30.06.2021, 12:15
An issue was discovered in Craft CMS before 3.6.7. In some circumstances, a potential Remote Code Execution vulnerability existed on sites that did not restrict administrative changes (if an attacker were somehow able to hijack an administrator's session).Enginsight
Vendor | Product | Version |
---|---|---|
craftcms | craft_cms | 𝑥 < 3.6.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References