Описание
LayerBB before 1.1.4 has multiple CSRF issues, as demonstrated by changing the System Settings via admin/general.php.
LayerBB before 1.1.4 has multiple CSRF issues, as demonstrated by changing the System Settings via admin/general.php.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2019-16531
- https://github.com/AndyRixon/LayerBB/pull/40
- https://github.com/0xB9/LayerBB-1.1.3-CSRF/blob/master/README.md
- https://github.com/AndyRixon/LayerBB/compare/1.1.3...1.1.4
- http://packetstormsecurity.com/files/154549/LayerBB-1.1.3-Cross-Site-Request-Forgery.html
EPSS
Процентиль: 51%
0.0028
Низкий
CVE ID
Связанные уязвимости
CVSS3: 8.8
nvd
больше 6 лет назад
LayerBB before 1.1.4 has multiple CSRF issues, as demonstrated by changing the System Settings via admin/general.php.
EPSS
Процентиль: 51%
0.0028
Низкий