Описание
Cross-site request forgery (CSRF) vulnerability in Ikiwiki before 2.42 allows remote attackers to modify user preferences, including passwords, via the (1) preferences and (2) edit forms.
Ссылки
Уязвимые конфигурации
Конфигурация 1Версия до 2.41 (включая)
cpe:2.3:a:ikiwiki:ikiwiki:*:*:*:*:*:*:*:*
EPSS
Процентиль: 44%
0.00242
Низкий
4.3 Medium
CVSS2
Дефекты
CWE-352
Связанные уязвимости
ubuntu
больше 17 лет назад
Cross-site request forgery (CSRF) vulnerability in Ikiwiki before 2.42 allows remote attackers to modify user preferences, including passwords, via the (1) preferences and (2) edit forms.
debian
больше 17 лет назад
Cross-site request forgery (CSRF) vulnerability in Ikiwiki before 2.42 ...
github
больше 3 лет назад
Cross-site request forgery (CSRF) vulnerability in Ikiwiki before 2.42 allows remote attackers to modify user preferences, including passwords, via the (1) preferences and (2) edit forms.
EPSS
Процентиль: 44%
0.00242
Низкий
4.3 Medium
CVSS2
Дефекты
CWE-352