Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-235f-rjgh-phvr

Опубликовано: 17 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 0.6

Описание

CSRF in Ercom Cryptobox administration console allows attacker to trigger some actions on behalf of a Cryptobox administrator. The attack requires the administrator to browse a malicious web site or to click a link while he has an open session on the administration console.

CSRF in Ercom Cryptobox administration console allows attacker to trigger some actions on behalf of a Cryptobox administrator. The attack requires the administrator to browse a malicious web site or to click a link while he has an open session on the administration console.

EPSS

Процентиль: 7%
0.00027
Низкий

0.6 Low

CVSS4

Дефекты

CWE-352

Связанные уязвимости

nvd
около 2 месяцев назад

CSRF in Ercom Cryptobox administration console allows attacker to trigger some actions on behalf of a Cryptobox administrator. The attack requires the administrator to browse a malicious web site or to click a link while he has an open session on the administration console.

EPSS

Процентиль: 7%
0.00027
Низкий

0.6 Low

CVSS4

Дефекты

CWE-352