Описание
A CSRF issue in manager/delete_machine/{id} in MunkiReport before 5.6.3 allows attackers to delete arbitrary machines from the MunkiReport database.
Ссылки
- Release NotesThird Party Advisory
- Release NotesThird Party Advisory
- Third Party Advisory
- Release NotesThird Party Advisory
- Release NotesThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 5.6.3 (исключая)
cpe:2.3:a:munkireport_project:munkireport:*:*:*:*:*:*:*:*
EPSS
Процентиль: 43%
0.00206
Низкий
8.1 High
CVSS3
5.8 Medium
CVSS2
Дефекты
CWE-352
Связанные уязвимости
CVSS3: 8.1
github
больше 3 лет назад
A CSRF issue in manager/delete_machine/{id} in MunkiReport before 5.6.3 allows attackers to delete arbitrary machines from the MunkiReport database.
EPSS
Процентиль: 43%
0.00206
Низкий
8.1 High
CVSS3
5.8 Medium
CVSS2
Дефекты
CWE-352