CVE-2021-21329

Published
View on NVD ↗
CVSS v3
8.7
HIGH
CVSS v2
6.8
MEDIUM
Affected
1
PROJECT

Description

RATCF is an open-source framework for hosting Cyber-Security Capture the Flag events. In affected versions of RATCF users with multi factor authentication enabled are able to log in without a valid token. This is fixed in commit cebb67b.

The Django backend running RACTF wargame events.
GitHubGitHub
26