CVE-2021-40350

webctrl.cgi.elf on Christie Digital DWU850-GS V06.46 devices allows attackers to perform any desired action via a crafted query containing an unspecified Cookie header. Authentication bypass can be achieved by including an administrative cookie that the device does not validate.
Configurations

Configuration 1


Information

Published : 2021-09-01 03:15

Updated : 2021-09-09 08:29


NVD link : CVE-2021-40350

Mitre link : CVE-2021-40350

Products Affected
No products.
CWE