Описание
Cross-Site Request Forgery (CSRF) vulnerability in Help Center Live allows remote attackers to perform actions as the administrator via a link or IMG tag to view.php.
Ссылки
- Broken Link
- Broken LinkExploitPatchThird Party AdvisoryVDB EntryVendor Advisory
- Broken Link
- Broken LinkExploitPatchThird Party AdvisoryVDB EntryVendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:helpcenterlive:help_center_live:-:*:*:*:*:*:*:*
EPSS
Процентиль: 71%
0.00689
Низкий
6.5 Medium
CVSS3
7.5 High
CVSS2
Дефекты
CWE-352
CWE-352
Связанные уязвимости
CVSS3: 6.5
github
почти 4 года назад
Cross-Site Request Forgery (CSRF) vulnerability in Help Center Live allows remote attackers to perform actions as the administrator via a link or IMG tag to view.php.
EPSS
Процентиль: 71%
0.00689
Низкий
6.5 Medium
CVSS3
7.5 High
CVSS2
Дефекты
CWE-352
CWE-352