CVE-2021-20795
CVE-2021-20795
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.5%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
13 Oct 2021Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Cross-site request forgery (CSRF) vulnerability in the management screen of Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote attacker to hijack the authentication of administrators and unintended operations may be performed via unspecified vectors.
Affected products
Cybozu, Inc. · Cybozu Remote ServiceWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →