The CTS Web transaction system related to authentication management is implemented incorrectly. After login, remote attackers can manipulate cookies to access other accounts and trade in the stock market with spoofed identity.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: twcert
Published: 2021-05-28T08:10:28.395920Z
Updated: 2024-09-16T22:24:59.184Z
Reserved: 2021-05-10T00:00:00
Link: CVE-2021-32543
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-05-28T08:15:07.137
Modified: 2024-11-21T06:07:14.103
Link: CVE-2021-32543
Redhat
No data.