Описание
A Cross-Site Request Forgery (CSRF) in Sunbird DCIM dcTrack v9.1.2 allows authenticated attackers to escalate their privileges by forcing an Administrator user to perform sensitive requests in some admin screens.
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:sunbirddcim:dctrack:9.1.2:*:*:*:*:*:*:*
EPSS
Процентиль: 16%
0.0005
Низкий
8 High
CVSS3
Дефекты
CWE-352
Связанные уязвимости
CVSS3: 8
github
около 1 года назад
A Cross-Site Request Forgery (CSRF) in Sunbird DCIM dcTrack v9.1.2 allows authenticated attackers to escalate their privileges by forcing an Administrator user to perform sensitive requests in some admin screens.
EPSS
Процентиль: 16%
0.0005
Низкий
8 High
CVSS3
Дефекты
CWE-352