PT-2026-84852 · Unknown · Tsi-Dpdp-Cms
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
tsi-coop tsi-dpdp-cms versions prior to 0.5.1
Description
A security flaw involving improper neutralization of input during web page generation allows for remote attacks. This issue results in client-side enforcement of server-side security, meaning security checks are performed on the user's browser rather than the server, which can be bypassed by an attacker.
Recommendations
Upgrade to version 0.5.1.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Tsi-Dpdp-Cms