VYPR
Medium severity5.3NVD Advisory· Published Dec 14, 2021· Updated Jun 17, 2026

CVE-2021-44937

CVE-2021-44937

Description

glFusion CMS v1.7.9 is affected by an arbitrary user registration vulnerability in /public_html/users.php. An attacker can register with the mailbox of any user. When users want to register, they will find that the mailbox has been occupied.

Affected products

3
  • Glfusion/Glfusion3 versions
    cpe:2.3:a:glfusion:glfusion:1.7.9:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:glfusion:glfusion:1.7.9:*:*:*:*:*:*:*
    • (no CPE)
    • (no CPE)range: =1.7.9

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.