Логотип exploitDog
bind:CVE-2007-1520
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2007-1520

Количество 2

Количество 2

nvd логотип

CVE-2007-1520

почти 19 лет назад

The cross-site request forgery (CSRF) protection in PHP-Nuke 8.0 and earlier does not ensure the SERVER superglobal is an array before validating the HTTP_REFERER, which allows remote attackers to conduct CSRF attacks.

CVSS2: 6.8
EPSS: Низкий
github логотип

GHSA-cf65-qrmp-4447

почти 4 года назад

The cross-site request forgery (CSRF) protection in PHP-Nuke 8.0 and earlier does not ensure the SERVER superglobal is an array before validating the HTTP_REFERER, which allows remote attackers to conduct CSRF attacks.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2007-1520

The cross-site request forgery (CSRF) protection in PHP-Nuke 8.0 and earlier does not ensure the SERVER superglobal is an array before validating the HTTP_REFERER, which allows remote attackers to conduct CSRF attacks.

CVSS2: 6.8
1%
Низкий
почти 19 лет назад
github логотип
GHSA-cf65-qrmp-4447

The cross-site request forgery (CSRF) protection in PHP-Nuke 8.0 and earlier does not ensure the SERVER superglobal is an array before validating the HTTP_REFERER, which allows remote attackers to conduct CSRF attacks.

1%
Низкий
почти 4 года назад

Уязвимостей на страницу