Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-57jj-772p-fq8q

Опубликовано: 21 янв. 2022
Источник: github
Github: Не прошло ревью

Описание

In mblog <= 3.5.0 there is a CSRF vulnerability in the background article management. The attacker constructs a CSRF load. Once the administrator clicks a malicious link, the article will be deleted.

In mblog <= 3.5.0 there is a CSRF vulnerability in the background article management. The attacker constructs a CSRF load. Once the administrator clicks a malicious link, the article will be deleted.

EPSS

Процентиль: 28%
0.00098
Низкий

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 4.3
nvd
около 4 лет назад

In mblog <= 3.5.0 there is a CSRF vulnerability in the background article management. The attacker constructs a CSRF load. Once the administrator clicks a malicious link, the article will be deleted.

EPSS

Процентиль: 28%
0.00098
Низкий

Дефекты

CWE-352