Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5wxx-482m-3pgp

Опубликовано: 30 июн. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

A vulnerability classified as problematic was found in TrueConf Server 4.3.7. This vulnerability affects unknown code of the file /admin/service/stop/. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

A vulnerability classified as problematic was found in TrueConf Server 4.3.7. This vulnerability affects unknown code of the file /admin/service/stop/. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 33%
0.0013
Низкий

8.8 High

CVSS3

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 4.3
nvd
больше 3 лет назад

A vulnerability classified as problematic was found in TrueConf Server 4.3.7. This vulnerability affects unknown code of the file /admin/service/stop/. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 3.5
fstec
больше 3 лет назад

Уязвимость компонента /admin/service/stop/ программного обеспечения TrueConf Server, позволяющая нарушителю осуществить CSRF-атаку

EPSS

Процентиль: 33%
0.0013
Низкий

8.8 High

CVSS3

Дефекты

CWE-352