Логотип exploitDog
bind:CVE-2020-23960
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-23960

Количество 2

Количество 2

nvd логотип

CVE-2020-23960

около 5 лет назад

Multiple cross-site request forgery (CSRF) vulnerabilities in the Admin Console in Fork before 5.8.3 allows remote attackers to perform unauthorized actions as administrator to (1) approve the mass of the user's comments, (2) restoring a deleted user, (3) installing or running modules, (4) resetting the analytics, (5) pinging the mailmotor api, (6) uploading things to the media library, (7) exporting locale.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-pvgf-mrr4-cw7r

почти 5 лет назад

Cross-Site Request Forgery in ForkCMS

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-23960

Multiple cross-site request forgery (CSRF) vulnerabilities in the Admin Console in Fork before 5.8.3 allows remote attackers to perform unauthorized actions as administrator to (1) approve the mass of the user's comments, (2) restoring a deleted user, (3) installing or running modules, (4) resetting the analytics, (5) pinging the mailmotor api, (6) uploading things to the media library, (7) exporting locale.

CVSS3: 8.8
0%
Низкий
около 5 лет назад
github логотип
GHSA-pvgf-mrr4-cw7r

Cross-Site Request Forgery in ForkCMS

CVSS3: 8.8
0%
Низкий
почти 5 лет назад

Уязвимостей на страницу