Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-41811

Опубликовано: 05 авг. 2024
Источник: nvd
CVSS3: 3.9
EPSS Низкий

Описание

ipl/web is a set of common web components for php projects. Some of the recent development by Icinga is, under certain circumstances, susceptible to cross site request forgery. (CSRF). All affected products, in any version, will be unaffected by this once icinga-php-library is upgraded. Version 0.10.1 includes a fix for this. It will be published as part of the icinga-php-library v0.14.1 release.

EPSS

Процентиль: 35%
0.00145
Низкий

3.9 Low

CVSS3

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 3.9
ubuntu
больше 1 года назад

ipl/web is a set of common web components for php projects. Some of the recent development by Icinga is, under certain circumstances, susceptible to cross site request forgery. (CSRF). All affected products, in any version, will be unaffected by this once `icinga-php-library` is upgraded. Version 0.10.1 includes a fix for this. It will be published as part of the `icinga-php-library` v0.14.1 release.

CVSS3: 3.9
debian
больше 1 года назад

ipl/web is a set of common web components for php projects. Some of th ...

CVSS3: 5
github
больше 1 года назад

ipl/web's `ipl\Web\Common\CsrfCounterMeasure` is susceptible to CSRF

EPSS

Процентиль: 35%
0.00145
Низкий

3.9 Low

CVSS3

Дефекты

CWE-352