EgavilanMedia User Registration & Login System with Admin Panel 1.0 is affected by Cross Site Request Forgery (CSRF) to remotely gain privileges in the User Profile panel. An attacker can update any user's account.
References
Link | Resource |
---|---|
http://egavilanmedia.com | Vendor Advisory |
https://www.exploit-db.com/exploits/49151 | Exploit Third Party Advisory VDB Entry |
http://egavilanmedia.com | Vendor Advisory |
https://www.exploit-db.com/exploits/49151 | Exploit Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 05:27
Type | Values Removed | Values Added |
---|---|---|
References | () http://egavilanmedia.com - Vendor Advisory | |
References | () https://www.exploit-db.com/exploits/49151 - Exploit, Third Party Advisory, VDB Entry |
Information
Published : 2020-12-21 15:15
Updated : 2024-11-21 05:27
NVD link : CVE-2020-35273
Mitre link : CVE-2020-35273
CVE.ORG link : CVE-2020-35273
JSON object : View
Products Affected
egavilanmedia
- user_registration_\&_login_system_with_admin_panel
CWE
CWE-352
Cross-Site Request Forgery (CSRF)