Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-74v2-3wxv-w46r

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

I, Librarian version 4.8 and earlier contains a Cross site Request Forgery (CSRF) vulnerability in users.php that can result in the password of the admin being forced to be changed without the administrator's knowledge.

I, Librarian version 4.8 and earlier contains a Cross site Request Forgery (CSRF) vulnerability in users.php that can result in the password of the admin being forced to be changed without the administrator's knowledge.

EPSS

Процентиль: 30%
0.00112
Низкий

8.8 High

CVSS3

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 8.8
nvd
почти 8 лет назад

I, Librarian version 4.8 and earlier contains a Cross site Request Forgery (CSRF) vulnerability in users.php that can result in the password of the admin being forced to be changed without the administrator's knowledge.

CVSS3: 8.8
debian
почти 8 лет назад

I, Librarian version 4.8 and earlier contains a Cross site Request For ...

EPSS

Процентиль: 30%
0.00112
Низкий

8.8 High

CVSS3

Дефекты

CWE-352