Логотип exploitDog
bind:CVE-2020-11825
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-11825

Количество 4

Количество 4

ubuntu логотип

CVE-2020-11825

почти 6 лет назад

In Dolibarr 10.0.6, forms are protected with a CSRF token against CSRF attacks. The problem is any CSRF token in any user's session can be used in another user's session. CSRF tokens should not be valid in this situation.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2020-11825

почти 6 лет назад

In Dolibarr 10.0.6, forms are protected with a CSRF token against CSRF attacks. The problem is any CSRF token in any user's session can be used in another user's session. CSRF tokens should not be valid in this situation.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2020-11825

почти 6 лет назад

In Dolibarr 10.0.6, forms are protected with a CSRF token against CSRF ...

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-m66x-wm27-xxpc

больше 3 лет назад

Dolibarr Cross-Site Request Forgery Vulnerability

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2020-11825

In Dolibarr 10.0.6, forms are protected with a CSRF token against CSRF attacks. The problem is any CSRF token in any user's session can be used in another user's session. CSRF tokens should not be valid in this situation.

CVSS3: 8.8
0%
Низкий
почти 6 лет назад
nvd логотип
CVE-2020-11825

In Dolibarr 10.0.6, forms are protected with a CSRF token against CSRF attacks. The problem is any CSRF token in any user's session can be used in another user's session. CSRF tokens should not be valid in this situation.

CVSS3: 8.8
0%
Низкий
почти 6 лет назад
debian логотип
CVE-2020-11825

In Dolibarr 10.0.6, forms are protected with a CSRF token against CSRF ...

CVSS3: 8.8
0%
Низкий
почти 6 лет назад
github логотип
GHSA-m66x-wm27-xxpc

Dolibarr Cross-Site Request Forgery Vulnerability

CVSS3: 8.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу