CVE-2021-37234

Severity CVSS v4.0:
Pending analysis
Type:
CWE-306 Missing Authentication for Critical Function
Publication date:
03/02/2023
Last modified:
26/03/2025

Description

Incorrect Access Control vulnerability in Modern Honey Network commit 0abf0db9cd893c6d5c727d036e1f817c02de4c7b allows remote attackers to view sensitive information via crafted PUT request to Web API.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:modern_honey_network_project:modern_honey_network:*:*:*:*:*:*:*:* 2021-10-30 (excluding)