An issue in the Login page of Magnolia CMS v6.2.3 and below allows attackers to exploit both an Open Redirect vulnerability and Cross-Site Request Forgery (CSRF) in order to brute force and exfiltrate users' credentials.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T05:02:11.675Z

Reserved: 2022-01-18T00:00:00

Link: CVE-2021-46366

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-02-11T21:15:11.940

Modified: 2024-11-21T06:33:58.870

Link: CVE-2021-46366

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.