9.8
CVSSv3

CVE-2021-45914

Published: 24/05/2022 Updated: 08/08/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

In LuxSoft LuxCal Web Calendar prior to 5.2.0, an unauthenticated attacker can manipulate a POST request. This allows the attacker's session to be authenticated as any registered LuxCal user, including the site administrator.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

luxsoft luxcal