Логотип exploitDog
bind:CVE-2021-29349
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-29349

Количество 3

Количество 3

nvd логотип

CVE-2021-29349

почти 5 лет назад

Mahara 20.10 is affected by Cross Site Request Forgery (CSRF) that allows a remote attacker to remove inbox-mail on the server. The application fails to validate the CSRF token for a POST request. An attacker can craft a module/multirecipientnotification/inbox.php pieform_delete_all_notifications request, which leads to removing all messages from a mailbox.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2021-29349

почти 5 лет назад

Mahara 20.10 is affected by Cross Site Request Forgery (CSRF) that all ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-qmp2-78hm-526w

больше 3 лет назад

Mahara 20.10 is affected by Cross Site Request Forgery (CSRF) that allows a remote attacker to remove inbox-mail on the server. The application fails to validate the CSRF token for a POST request. An attacker can craft a module/multirecipientnotification/inbox.php pieform_delete_all_notifications request, which leads to removing all messages from a mailbox.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-29349

Mahara 20.10 is affected by Cross Site Request Forgery (CSRF) that allows a remote attacker to remove inbox-mail on the server. The application fails to validate the CSRF token for a POST request. An attacker can craft a module/multirecipientnotification/inbox.php pieform_delete_all_notifications request, which leads to removing all messages from a mailbox.

CVSS3: 6.5
1%
Низкий
почти 5 лет назад
debian логотип
CVE-2021-29349

Mahara 20.10 is affected by Cross Site Request Forgery (CSRF) that all ...

CVSS3: 6.5
1%
Низкий
почти 5 лет назад
github логотип
GHSA-qmp2-78hm-526w

Mahara 20.10 is affected by Cross Site Request Forgery (CSRF) that allows a remote attacker to remove inbox-mail on the server. The application fails to validate the CSRF token for a POST request. An attacker can craft a module/multirecipientnotification/inbox.php pieform_delete_all_notifications request, which leads to removing all messages from a mailbox.

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу