Логотип exploitDog
bind:CVE-2020-12257
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-12257

Количество 2

Количество 2

nvd логотип

CVE-2020-12257

больше 5 лет назад

rConfig 3.9.4 is vulnerable to cross-site request forgery (CSRF) because it lacks implementation of CSRF protection such as a CSRF token. An attacker can leverage this vulnerability by creating a form (add a user, delete a user, or edit a user).

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-g65v-mxwq-6x57

больше 3 лет назад

rConfig 3.9.4 is vulnerable to cross-site request forgery (CSRF) because it lacks implementation of CSRF protection such as a CSRF token. An attacker can leverage this vulnerability by creating a form (add a user, delete a user, or edit a user).

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-12257

rConfig 3.9.4 is vulnerable to cross-site request forgery (CSRF) because it lacks implementation of CSRF protection such as a CSRF token. An attacker can leverage this vulnerability by creating a form (add a user, delete a user, or edit a user).

CVSS3: 8.8
1%
Низкий
больше 5 лет назад
github логотип
GHSA-g65v-mxwq-6x57

rConfig 3.9.4 is vulnerable to cross-site request forgery (CSRF) because it lacks implementation of CSRF protection such as a CSRF token. An attacker can leverage this vulnerability by creating a form (add a user, delete a user, or edit a user).

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу