CVE-2021-29995
HIGHCloverDX < 5.7.1 - Cross-Site Request Forgery in Server Console
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2021-29995. PoCs published by niebardzo.
AI-analyzed exploit summary This exploit demonstrates a CSRF to RCE vulnerability in CloverDX by cracking the ViewState and chaining requests to execute a reverse shell payload. It requires an authenticated victim and a Java-based ViewState cracker.
Description
A Cross Site Request Forgery (CSRF) issue in Server Console in CloverDX through 5.9.0 allows remote attackers to execute any action as the logged-in user (including script execution). The issue is resolved in CloverDX 5.10, CloverDX 5.9.1, CloverDX 5.8.2, and CloverDX 5.7.1.
Exploits (1)
This exploit demonstrates a CSRF to RCE vulnerability in CloverDX by cracking the ViewState and chaining requests to execute a reverse shell payload. It requires an authenticated victim and a Java-based ViewState cracker.
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H