Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4cx3-gvx4-j3wg

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A CSRF in Concrete CMS version 8.5.5 and below allows an attacker to duplicate files which can lead to UI inconvenience, and exhaustion of disk space.Credit for discovery: "Solar Security CMS Research Team"

A CSRF in Concrete CMS version 8.5.5 and below allows an attacker to duplicate files which can lead to UI inconvenience, and exhaustion of disk space.Credit for discovery: "Solar Security CMS Research Team"

EPSS

Процентиль: 27%
0.00094
Низкий

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 5.4
nvd
больше 4 лет назад

A CSRF in Concrete CMS version 8.5.5 and below allows an attacker to duplicate files which can lead to UI inconvenience, and exhaustion of disk space.Credit for discovery: "Solar Security CMS Research Team"

EPSS

Процентиль: 27%
0.00094
Низкий

Дефекты

CWE-352