CVE-2021-32543

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
28/05/2021
Last modified:
27/05/2022

Description

The CTS Web transaction system related to authentication management is implemented incorrectly. After login, remote attackers can manipulate cookies to access other accounts and trade in the stock market with spoofed identity.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sysjust:cts_web:*:*:*:*:*:*:*:* 2021.3.24 (excluding)