Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2f53-hr63-f79f

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Multiple cross-site request forgery (CSRF) vulnerabilities in SilverStripe 2.3.x before 2.3.9 and 2.4.x before 2.4.3 allow remote attackers to hijack the authentication of administrators via destructive controller actions, a different vulnerability than CVE-2010-5087.

Multiple cross-site request forgery (CSRF) vulnerabilities in SilverStripe 2.3.x before 2.3.9 and 2.4.x before 2.4.3 allow remote attackers to hijack the authentication of administrators via destructive controller actions, a different vulnerability than CVE-2010-5087.

EPSS

Процентиль: 66%
0.00526
Низкий

Дефекты

CWE-352

Связанные уязвимости

nvd
больше 13 лет назад

Multiple cross-site request forgery (CSRF) vulnerabilities in SilverStripe 2.3.x before 2.3.9 and 2.4.x before 2.4.3 allow remote attackers to hijack the authentication of administrators via destructive controller actions, a different vulnerability than CVE-2010-5087.

debian
больше 13 лет назад

Multiple cross-site request forgery (CSRF) vulnerabilities in SilverSt ...

EPSS

Процентиль: 66%
0.00526
Низкий

Дефекты

CWE-352