Логотип exploitDog
bind:CVE-2021-41764
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-41764

Количество 2

Количество 2

nvd логотип

CVE-2021-41764

больше 4 лет назад

A cross-site request forgery (CSRF) vulnerability exists in Streama up to and including v1.10.3. The application does not have CSRF checks in place when performing actions such as uploading local files. As a result, attackers could make a logged-in administrator upload arbitrary local files via a CSRF attack and send them to the attacker.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-pgjv-446p-p2p9

больше 3 лет назад

A cross-site request forgery (CSRF) vulnerability exists in Streama up to and including v1.10.3. The application does not have CSRF checks in place when performing actions such as uploading local files. As a result, attackers could make a logged-in administrator upload arbitrary local files via a CSRF attack and send them to the attacker.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-41764

A cross-site request forgery (CSRF) vulnerability exists in Streama up to and including v1.10.3. The application does not have CSRF checks in place when performing actions such as uploading local files. As a result, attackers could make a logged-in administrator upload arbitrary local files via a CSRF attack and send them to the attacker.

CVSS3: 8.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-pgjv-446p-p2p9

A cross-site request forgery (CSRF) vulnerability exists in Streama up to and including v1.10.3. The application does not have CSRF checks in place when performing actions such as uploading local files. As a result, attackers could make a logged-in administrator upload arbitrary local files via a CSRF attack and send them to the attacker.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу