Description
The CTS Web transaction system related to authentication and session management is implemented incorrectly, which allows remote unauthenticated attackers can send a large number of valid usernames, and force those logged-in account to log out, causing the user to be unable to access the services
No analysis available yet.
Remediation
Vendor Solution
Update CTS to version released after 2021.3.25
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-19387 | The CTS Web transaction system related to authentication and session management is implemented incorrectly, which allows remote unauthenticated attackers can send a large number of valid usernames, and force those logged-in account to log out, causing the user to be unable to access the services |
References
History
No history.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2024-09-17T00:46:15.943Z
Reserved: 2021-05-10T00:00:00.000Z
Link: CVE-2021-32541
No data.
Status : Modified
Published: 2021-05-28T08:15:07.057
Modified: 2024-11-21T06:07:13.877
Link: CVE-2021-32541
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD