Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 10 Dec 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Openbmcs
Openbmcs openbmcs |
|
| Vendors & Products |
Openbmcs
Openbmcs openbmcs |
Tue, 09 Dec 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 09 Dec 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | OpenBMCS 2.4 contains a CSRF vulnerability that allows attackers to perform actions with administrative privileges by exploiting the sendFeedback.php endpoint. Attackers can submit malicious requests to trigger unintended actions, such as sending emails or modifying system settings. | |
| Title | OpenBMCS Cross Site Request Forgery (CSRF) via sendFeedback.php | |
| Weaknesses | CWE-352 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2025-12-09T21:32:16.371Z
Reserved: 2025-12-05T19:10:29.045Z
Link: CVE-2021-47702
Updated: 2025-12-09T21:32:11.583Z
Status : Awaiting Analysis
Published: 2025-12-09T21:15:48.890
Modified: 2025-12-12T15:19:07.567
Link: CVE-2021-47702
No data.
OpenCVE Enrichment
Updated: 2025-12-10T21:33:29Z