6.5
CVSSv3

CVE-2021-39458

Published: 09/09/2021 Updated: 12/07/2022
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

Triggering an error page of the import process in Yakamara Media Redaxo CMS version 5.12.1 allows an authenticated CMS user has to alternate the files of a vaild file backup. This leads of leaking the database credentials in the environment variables.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redaxo redaxo 5.12.1

Github Repositories

Repo of CVEs i submitted

MyOwnCVEs Repo of CVEs i submitted Redaxo CMS CVE-2021-39458 CVE-2021-39459 Web@rchiv CVE-2022-29347