CVE-2021-37234
Severity CVSS v4.0:
Pending analysis
Type:
CWE-306
Missing Authentication for Critical Function
Publication date:
03/02/2023
Last modified:
26/03/2025
Description
Incorrect Access Control vulnerability in Modern Honey Network commit 0abf0db9cd893c6d5c727d036e1f817c02de4c7b allows remote attackers to view sensitive information via crafted PUT request to Web API.
Impact
Base Score 3.x
6.50
Severity 3.x
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:modern_honey_network_project:modern_honey_network:*:*:*:*:*:*:*:* | 2021-10-30 (excluding) |
To consult the complete list of CPE names with products and versions, see this page