Security Advisory
CVE-2021-35343
4.3
MEDIUM
Vulnerability Description
Cross-Site Request Forgery (CSRF) vulnerability in the /op/op.Ajax.php in SeedDMS v5.1.x<5.1.23 and v6.0.x<6.0.16 allows a remote attacker to edit document name without victim's knowledge, by enticing an authenticated user to visit an attacker's web page.
Published Date
August 3, 2021
Official Source
NIST NVD Advisory