Handler on Duty: Rob VandenBrink
Threat Level: green
Published | 2021-11-30 20:15:00 |
---|---|
Last Modified | 2021-12-01 13:43:00 |
AKA | CVE-2021-42564 |
Summary | An open redirect through HTML injection in confidential messages in Cryptshare before 5.1.0 allows remote attackers (with permission to provide confidential messages via Cryptshare) to redirect targeted victims to any URL via the ' |
CVSS Score | 4.9 |
Access Vector | Local | Adjacent | Network |
---|---|---|---|
Access Complexity | Low | Medium | High |
Authentication | None | Single | Multiple |
Confidentiality | None | Partial | Complete |
Integrity | None | Partial | Complete |
Availability | None | Partial | Complete |