PoC Index

CVE-2021-36444

HIGH 8.8EPSS 0.6%

Cross Site Request Forgery (CSRF) vulnerability in imcat 5.4 allows remote attackers to gain escalated privileges via flaws one time token generation on the add administrator page.

CVSS v3.1
8.8 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS v3.1
8.8 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS
0.61% chance of exploitation in the next 30 days, 47th percentile
Published
2023-02-03
Updated
2025-03-26

Proof-of-concept exploits (1)

References

Related