Cross-Site Request Forgery in PbootCMS by AvaterXXX
CVE-2020-17901

6.5MEDIUM

Key Information:

Vendor

Pbootcms

Status
Vendor
CVE Published:
30 November 2020

What is CVE-2020-17901?

A vulnerability in PbootCMS version 1.3.2 allows attackers to leverage cross-site request forgery techniques to change user passwords without proper authorization. This flaw could lead to unauthorized access, compromising user accounts and sensitive data. It highlights the need for robust CSRF protections to safeguard user information and maintain the integrity of web applications.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.