Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-4090

Опубликовано: 24 нояб. 2022
Источник: nvd
CVSS3: 4.3
CVSS3: 8.8
EPSS Низкий

Описание

A vulnerability was found in rickxy Stock Management System and classified as problematic. This issue affects some unknown processing of the file us_transac.php?action=add. The manipulation leads to cross-site request forgery. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-214331.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:stock_management_system_project:stock_management_system:-:*:*:*:*:*:*:*

EPSS

Процентиль: 29%
0.00103
Низкий

4.3 Medium

CVSS3

8.8 High

CVSS3

Дефекты

CWE-863
CWE-352

Связанные уязвимости

CVSS3: 8.8
github
около 3 лет назад

A vulnerability was found in rickxy Stock Management System and classified as problematic. This issue affects some unknown processing of the file us_transac.php?action=add. The manipulation leads to cross-site request forgery. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-214331.

EPSS

Процентиль: 29%
0.00103
Низкий

4.3 Medium

CVSS3

8.8 High

CVSS3

Дефекты

CWE-863
CWE-352