CVE-2021-20795

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
13/10/2021
Last modified:
19/10/2021

Description

Cross-site request forgery (CSRF) vulnerability in the management screen of Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote attacker to hijack the authentication of administrators and unintended operations may be performed via unspecified vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cybozu:remote_service_manager:3.1.8:*:*:*:*:*:*:*
cpe:2.3:a:cybozu:remote_service_manager:3.1.9:*:*:*:*:*:*:*