CVE-2021-4026

bookstack is vulnerable to Improper Access Control
Configurations

Configuration 1 (hide)

cpe:2.3:a:bookstackapp:bookstack:*:*:*:*:*:*:*:*

History

09 Aug 2022, 14:43

Type Values Removed Values Added
CWE CWE-668 CWE-863

01 Dec 2021, 14:01

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : 4.0
v3 : 4.3
References (MISC) https://github.com/bookstackapp/bookstack/commit/b4fa82e3298a15443ca40bff205b7a16a1031d92 - (MISC) https://github.com/bookstackapp/bookstack/commit/b4fa82e3298a15443ca40bff205b7a16a1031d92 - Patch, Third Party Advisory
References (CONFIRM) https://huntr.dev/bounties/c6dfa80d-43e6-4b49-95af-cc031bb66b1d - (CONFIRM) https://huntr.dev/bounties/c6dfa80d-43e6-4b49-95af-cc031bb66b1d - Exploit, Third Party Advisory
CPE cpe:2.3:a:bookstackapp:bookstack:*:*:*:*:*:*:*:*
CWE CWE-284 CWE-668

30 Nov 2021, 20:16

Type Values Removed Values Added
New CVE

Information

Published : 2021-11-30 20:15

Updated : 2024-02-04 22:08


NVD link : CVE-2021-4026

Mitre link : CVE-2021-4026

CVE.ORG link : CVE-2021-4026


JSON object : View

Products Affected

bookstackapp

  • bookstack
CWE
CWE-863

Incorrect Authorization

CWE-284

Improper Access Control