In Ifme, versions v5.0.0 to v7.32 are vulnerable against an improper access control, which makes it possible for admins to ban themselves leading to their deactivation from Ifme account and complete loss of admin access to Ifme.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: Mend

Published: 2021-12-27T00:00:00

Updated: 2021-12-29T18:24:22

Reserved: 2021-01-22T00:00:00


Link: CVE-2021-25991

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-12-29T09:15:09.467

Modified: 2022-01-10T16:29:47.773


Link: CVE-2021-25991

JSON object: View

cve-icon Redhat Information

No data.