Количество 2
Количество 2
CVE-2023-48652
около 2 лет назад
Concrete CMS 9 before 9.2.3 is vulnerable to Cross Site Request Forgery (CSRF) via /ccm/system/dialogs/logs/delete_all/submit. An attacker can force an admin user to delete server report logs on a web application to which they are currently authenticated.
CVSS3: 4.3
EPSS: Низкий
GHSA-qp42-5pj7-4ccm
около 2 лет назад
Concrete CMS Cross Site Request Forgery (CSRF)
CVSS3: 4.3
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-48652 Concrete CMS 9 before 9.2.3 is vulnerable to Cross Site Request Forgery (CSRF) via /ccm/system/dialogs/logs/delete_all/submit. An attacker can force an admin user to delete server report logs on a web application to which they are currently authenticated. | CVSS3: 4.3 | 0% Низкий | около 2 лет назад | |
GHSA-qp42-5pj7-4ccm Concrete CMS Cross Site Request Forgery (CSRF) | CVSS3: 4.3 | 0% Низкий | около 2 лет назад |
Уязвимостей на страницу
20