Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2013-1468

Опубликовано: 14 мар. 2013
Источник: debian
EPSS Средний

Описание

Cross-site request forgery (CSRF) vulnerability in the LocalFiles Editor plugin in Piwigo before 2.4.7 allows remote attackers to hijack the authentication of administrators for requests that create arbitrary PHP files via unspecified vectors.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
piwigoremovedpackage
piwigoend-of-lifesqueezepackage

Примечания

  • Request to mark the package as unsupported in #779104

  • https://www.htbridge.com/advisory/HTB23144

EPSS

Процентиль: 95%
0.18848
Средний

Связанные уязвимости

ubuntu
почти 13 лет назад

Cross-site request forgery (CSRF) vulnerability in the LocalFiles Editor plugin in Piwigo before 2.4.7 allows remote attackers to hijack the authentication of administrators for requests that create arbitrary PHP files via unspecified vectors.

nvd
почти 13 лет назад

Cross-site request forgery (CSRF) vulnerability in the LocalFiles Editor plugin in Piwigo before 2.4.7 allows remote attackers to hijack the authentication of administrators for requests that create arbitrary PHP files via unspecified vectors.

github
больше 3 лет назад

Cross-site request forgery (CSRF) vulnerability in the LocalFiles Editor plugin in Piwigo before 2.4.7 allows remote attackers to hijack the authentication of administrators for requests that create arbitrary PHP files via unspecified vectors.

EPSS

Процентиль: 95%
0.18848
Средний