Cross Site Request Forgery in Rukovoditel by Rukovoditel
CVE-2021-30224
8.8HIGH
What is CVE-2021-30224?
A Cross Site Request Forgery (CSRF) vulnerability exists in Rukovoditel v2.8.3 that enables attackers to exploit the system by creating an administrative user with arbitrary credentials. This weakness may allow malicious actors to gain unauthorized access to sensitive functions in the application, raising serious security concerns for affected installations. Proper measures should be taken to mitigate the risks associated with this vulnerability.
