← Back to CVE List

CVE-2021-22950

Published: 2021-09-23T13:15Z
Last Modified: 2024-11-21T05:51Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Concrete CMS prior to 8.5.6 had a CSFR vulnerability allowing attachments to comments in the conversation section to be deleted.Credit for discovery: "Solar Security Research Team" > MITRE Terms of Use apply – see LICENSE‑MITRE.txt