CVE-2020-35273

EgavilanMedia User Registration & Login System with Admin Panel 1.0 is affected by Cross Site Request Forgery (CSRF) to remotely gain privileges in the User Profile panel. An attacker can update any user's account.
References
Link Resource
http://egavilanmedia.com Vendor Advisory
https://www.exploit-db.com/exploits/49151 Exploit Third Party Advisory VDB Entry
http://egavilanmedia.com Vendor Advisory
https://www.exploit-db.com/exploits/49151 Exploit Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:egavilanmedia:user_registration_\&_login_system_with_admin_panel:1.0:*:*:*:*:*:*:*

History

21 Nov 2024, 05:27

Type Values Removed Values Added
References () http://egavilanmedia.com - Vendor Advisory () http://egavilanmedia.com - Vendor Advisory
References () https://www.exploit-db.com/exploits/49151 - Exploit, Third Party Advisory, VDB Entry () https://www.exploit-db.com/exploits/49151 - Exploit, Third Party Advisory, VDB Entry

Information

Published : 2020-12-21 15:15

Updated : 2024-11-21 05:27


NVD link : CVE-2020-35273

Mitre link : CVE-2020-35273

CVE.ORG link : CVE-2020-35273


JSON object : View

Products Affected

egavilanmedia

  • user_registration_\&_login_system_with_admin_panel
CWE
CWE-352

Cross-Site Request Forgery (CSRF)