Описание
Leantime 3.0.6 is vulnerable to Cross Site Request Forgery (CSRF). This vulnerability allows malicious actors to perform unauthorized actions on behalf of authenticated users, specifically administrators.
Ссылки
- Broken Link
- Product
- ExploitThird Party Advisory
- Broken Link
- Product
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:leantime:leantime:3.0.6:*:*:*:*:*:*:*
EPSS
Процентиль: 58%
0.00365
Низкий
8.8 High
CVSS3
Дефекты
CWE-352
Связанные уязвимости
CVSS3: 8.8
github
почти 2 года назад
Leantime 3.0.6 is vulnerable to Cross Site Request Forgery (CSRF). This vulnerability allows malicious actors to perform unauthorized actions on behalf of authenticated users, specifically administrators.
EPSS
Процентиль: 58%
0.00365
Низкий
8.8 High
CVSS3
Дефекты
CWE-352