Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-774r-q974-38m9

Опубликовано: 16 мая 2024
Источник: github
Github: Не прошло ревью
CVSS4: 6.9
CVSS3: 4.3

Описание

A vulnerability classified as problematic has been found in SourceCodester Simple Online Bidding System 1.0. This affects an unknown part of the file /simple-online-bidding-system/admin/ajax.php?action=save_user. The manipulation leads to cross-site request forgery. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-264465 was assigned to this vulnerability.

A vulnerability classified as problematic has been found in SourceCodester Simple Online Bidding System 1.0. This affects an unknown part of the file /simple-online-bidding-system/admin/ajax.php?action=save_user. The manipulation leads to cross-site request forgery. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-264465 was assigned to this vulnerability.

EPSS

Процентиль: 35%
0.00142
Низкий

6.9 Medium

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 4.3
nvd
больше 1 года назад

A vulnerability classified as problematic has been found in SourceCodester Simple Online Bidding System 1.0. This affects an unknown part of the file /simple-online-bidding-system/admin/ajax.php?action=save_user. The manipulation leads to cross-site request forgery. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-264465 was assigned to this vulnerability.

EPSS

Процентиль: 35%
0.00142
Низкий

6.9 Medium

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-352