Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-50858

Опубликовано: 14 янв. 2025
Источник: debian
EPSS Низкий

Описание

Multiple endpoints in GestioIP v3.5.7 are vulnerable to Cross-Site Request Forgery (CSRF). An attacker can execute actions via the admin's browser by hosting a malicious URL, leading to data modification, deletion, or exfiltration.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gestioipitppackage

EPSS

Процентиль: 34%
0.00137
Низкий

Связанные уязвимости

CVSS3: 8.8
nvd
около 1 года назад

Multiple endpoints in GestioIP v3.5.7 are vulnerable to Cross-Site Request Forgery (CSRF). An attacker can execute actions via the admin's browser by hosting a malicious URL, leading to data modification, deletion, or exfiltration.

CVSS3: 8.8
github
около 1 года назад

Multiple endpoints in GestioIP v3.5.7 are vulnerable to Cross-Site Request Forgery (CSRF). An attacker can execute actions via the admin's browser by hosting a malicious URL, leading to data modification, deletion, or exfiltration.

EPSS

Процентиль: 34%
0.00137
Низкий