CVE-2021-27701
Last modified
CVE-2021-27701 is a medium-severity vulnerability rated 4.7/10 on the CVSS scale. SOCIFI Socifi Guest wifi as SAAS is affected by Cross Site Request Forgery (CSRF) via the Socifi wifi portal. The application does not contain a CSRF token and request validation. EPSS estimates a 0.17% chance of exploitation in the next 30 days.
Description
SOCIFI Socifi Guest wifi as SAAS is affected by Cross Site Request Forgery (CSRF) via the Socifi wifi portal. The application does not contain a CSRF token and request validation. An attacker can Add/Modify any random user data by sending a crafted CSRF request.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2021-27701?
How severe is CVE-2021-27701?
How do I fix CVE-2021-27701?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2021
- CVE-2021-27692Command Injection in Tenda G1 and G3 routers with firmware v…9.8
- CVE-2021-27693Server-side Request Forgery (SSRF) vulnerability in PublicCM…9.8
- CVE-2021-27695Multiple stored cross-site scripting (XSS) vulnerabilities i…6.1
- CVE-2021-27697RIOT-OS 2021.01 contains a buffer overflow vulnerability in …9.8
- CVE-2021-27698RIOT-OS 2021.01 contains a buffer overflow vulnerability in …9.8
- CVE-2021-27700SOCIFI Socifi Guest wifi as SAAS wifi portal is affected by …7.6
- CVE-2021-27702Sercomm Router Etisalat Model S3- AC2100 is affected by Inco…7.3
- CVE-2021-27703Sercomm Model Etisalat Model S3- AC2100 is affected by Cross…5.4
- CVE-2021-27704Appspace 6.2.4 is affected by Incorrect Access Control via t…6.5
- CVE-2021-27705Buffer Overflow in Tenda G1 and G3 routers with firmware v15…9.8
- CVE-2021-27706Buffer Overflow in Tenda G1 and G3 routers with firmware ver…9.8
- CVE-2021-27707Buffer Overflow in Tenda G1 and G3 routers with firmware v15…9.8
Are you affected by CVE-2021-27701?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
