Логотип exploitDog
bind:CVE-2025-28062
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-28062

Количество 2

Количество 2

nvd логотип

CVE-2025-28062

9 месяцев назад

A Cross-Site Request Forgery (CSRF) vulnerability was discovered in ERPNEXT 14.82.1 and 14.74.3. The vulnerability allows an attacker to perform unauthorized actions such as user deletion, password resets, and privilege escalation due to missing CSRF protections.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-v248-84wv-hjm5

9 месяцев назад

A Cross-Site Request Forgery (CSRF) vulnerability was discovered in ERPNEXT 14.82.1 and 14.74.3. The vulnerability allows an attacker to perform unauthorized actions such as user deletion, password resets, and privilege escalation due to missing CSRF protections.

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-28062

A Cross-Site Request Forgery (CSRF) vulnerability was discovered in ERPNEXT 14.82.1 and 14.74.3. The vulnerability allows an attacker to perform unauthorized actions such as user deletion, password resets, and privilege escalation due to missing CSRF protections.

CVSS3: 8.1
0%
Низкий
9 месяцев назад
github логотип
GHSA-v248-84wv-hjm5

A Cross-Site Request Forgery (CSRF) vulnerability was discovered in ERPNEXT 14.82.1 and 14.74.3. The vulnerability allows an attacker to perform unauthorized actions such as user deletion, password resets, and privilege escalation due to missing CSRF protections.

CVSS3: 8.1
0%
Низкий
9 месяцев назад

Уязвимостей на страницу