Логотип exploitDog
bind:CVE-2018-7634
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-7634

Количество 2

Количество 2

nvd логотип

CVE-2018-7634

почти 8 лет назад

An issue was discovered in Enalean Tuleap 9.17. Lack of CSRF attack mitigation while changing an e-mail address makes it possible to abuse the functionality by attackers. By making a CSRF attack, an attacker could make a victim change his registered e-mail address on the application, leading to account takeover.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-fc99-37j7-gh93

больше 3 лет назад

An issue was discovered in Enalean Tuleap 9.17. Lack of CSRF attack mitigation while changing an e-mail address makes it possible to abuse the functionality by attackers. By making a CSRF attack, an attacker could make a victim change his registered e-mail address on the application, leading to account takeover.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-7634

An issue was discovered in Enalean Tuleap 9.17. Lack of CSRF attack mitigation while changing an e-mail address makes it possible to abuse the functionality by attackers. By making a CSRF attack, an attacker could make a victim change his registered e-mail address on the application, leading to account takeover.

CVSS3: 8.8
0%
Низкий
почти 8 лет назад
github логотип
GHSA-fc99-37j7-gh93

An issue was discovered in Enalean Tuleap 9.17. Lack of CSRF attack mitigation while changing an e-mail address makes it possible to abuse the functionality by attackers. By making a CSRF attack, an attacker could make a victim change his registered e-mail address on the application, leading to account takeover.

CVSS3: 8.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу