ONLYOFFICE all versions as of... CVE-2021-43445

- AV AC AU C I A
发布: 2023-01-23
修订: 2024-11-21

ONLYOFFICE all versions as of 2021-11-08 is affected by Incorrect Access Control. An attacker can authenticate with the web socket service of the ONLYOFFICE document editor which is protected by JWT auth by using a default JWT signing key.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息