Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-8379

Опубликовано: 26 янв. 2016
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8
CVSS3: 8.8

Описание

CakePHP 2.x and 3.x before 3.1.5 might allow remote attackers to bypass the CSRF protection mechanism via the _method parameter.

РелизСтатусПримечание
artful

ignored

end of life
bionic

DNE

cosmic

not-affected

devel

not-affected

esm-apps/xenial

not-affected

2.8.0-1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [code not present]]
precise

ignored

end of life
precise/esm

DNE

precise was needs-triage
trusty

not-affected

code not present
trusty/esm

DNE

trusty was not-affected [code not present]

Показывать по

EPSS

Процентиль: 16%
0.00051
Низкий

6.8 Medium

CVSS2

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
nvd
около 10 лет назад

CakePHP 2.x and 3.x before 3.1.5 might allow remote attackers to bypass the CSRF protection mechanism via the _method parameter.

CVSS3: 8.8
debian
около 10 лет назад

CakePHP 2.x and 3.x before 3.1.5 might allow remote attackers to bypas ...

CVSS3: 8.8
github
больше 3 лет назад

CakePHP might allow remote attackers to bypass CSRF protection mechanism via the _method parameter

EPSS

Процентиль: 16%
0.00051
Низкий

6.8 Medium

CVSS2

8.8 High

CVSS3