Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-15009

Опубликовано: 05 янв. 2023
Источник: nvd
CVSS3: 3.5
CVSS3: 8.8
CVSS2: 4
EPSS Низкий

Описание

A vulnerability classified as problematic has been found in OpenACS bug-tracker. Affected is an unknown function of the file lib/nav-bar.adp of the component Search. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The name of the patch is aee43e5714cd8b697355ec3bf83eefee176d3fc3. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-217440.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:openacs:bug-tracker:*:*:*:*:*:*:*:*
Версия до 2016-05-25 (исключая)

EPSS

Процентиль: 36%
0.00152
Низкий

3.5 Low

CVSS3

8.8 High

CVSS3

4 Medium

CVSS2

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 8.8
github
около 3 лет назад

A vulnerability classified as problematic has been found in OpenACS bug-tracker. Affected is an unknown function of the file lib/nav-bar.adp of the component Search. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The name of the patch is aee43e5714cd8b697355ec3bf83eefee176d3fc3. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-217440.

EPSS

Процентиль: 36%
0.00152
Низкий

3.5 Low

CVSS3

8.8 High

CVSS3

4 Medium

CVSS2

Дефекты

CWE-352