Логотип exploitDog
bind:CVE-2019-16993
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-16993

Количество 4

Количество 4

ubuntu логотип

CVE-2019-16993

больше 6 лет назад

In phpBB before 3.1.7-PL1, includes/acp/acp_bbcodes.php has improper verification of a CSRF token on the BBCode page in the Administration Control Panel. An actual CSRF attack is possible if an attacker also manages to retrieve the session id of a reauthenticated administrator prior to targeting them.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2019-16993

больше 6 лет назад

In phpBB before 3.1.7-PL1, includes/acp/acp_bbcodes.php has improper verification of a CSRF token on the BBCode page in the Administration Control Panel. An actual CSRF attack is possible if an attacker also manages to retrieve the session id of a reauthenticated administrator prior to targeting them.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2019-16993

больше 6 лет назад

In phpBB before 3.1.7-PL1, includes/acp/acp_bbcodes.php has improper v ...

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-vj3x-vfm4-hvxc

больше 3 лет назад

phpBB Cross-Site Request Forgery (CSRF)

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2019-16993

In phpBB before 3.1.7-PL1, includes/acp/acp_bbcodes.php has improper verification of a CSRF token on the BBCode page in the Administration Control Panel. An actual CSRF attack is possible if an attacker also manages to retrieve the session id of a reauthenticated administrator prior to targeting them.

CVSS3: 8.8
0%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-16993

In phpBB before 3.1.7-PL1, includes/acp/acp_bbcodes.php has improper verification of a CSRF token on the BBCode page in the Administration Control Panel. An actual CSRF attack is possible if an attacker also manages to retrieve the session id of a reauthenticated administrator prior to targeting them.

CVSS3: 8.8
0%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-16993

In phpBB before 3.1.7-PL1, includes/acp/acp_bbcodes.php has improper v ...

CVSS3: 8.8
0%
Низкий
больше 6 лет назад
github логотип
GHSA-vj3x-vfm4-hvxc

phpBB Cross-Site Request Forgery (CSRF)

CVSS3: 8.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу