Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p32m-p89x-93gw

Опубликовано: 11 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 5.1
CVSS3: 4

Описание

FlexNet Publisher 11.12.1 contains a cross-site request forgery vulnerability that allows attackers to create administrative user accounts without authentication. Attackers can craft a malicious HTML form to trick authenticated users into submitting a request that creates a new local admin account with a predefined password.

FlexNet Publisher 11.12.1 contains a cross-site request forgery vulnerability that allows attackers to create administrative user accounts without authentication. Attackers can craft a malicious HTML form to trick authenticated users into submitting a request that creates a new local admin account with a predefined password.

EPSS

Процентиль: 6%
0.00023
Низкий

5.1 Medium

CVSS4

4 Medium

CVSS3

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 4
nvd
3 месяца назад

FlexNet Publisher 11.12.1 contains a cross-site request forgery vulnerability that allows attackers to create administrative user accounts without authentication. Attackers can craft a malicious HTML form to trick authenticated users into submitting a request that creates a new local admin account with a predefined password.

EPSS

Процентиль: 6%
0.00023
Низкий

5.1 Medium

CVSS4

4 Medium

CVSS3

Дефекты

CWE-352