CVE-2021-40616
14.06.2022, 10:15
thinkcmf v5.1.7 has an unauthorized vulnerability. The attacker can modify the password of the administrator account with id 1 through the background user management group permissions. The use condition is that the background user management group authority is required.
Vendor | Product | Version |
---|---|---|
thinkcmf | thinkcmf | 5.1.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration