CVE-2008-3760

Cross-site request forgery (CSRF) vulnerability in the sign-out page in Vanilla 1.1.4 and earlier allows remote attackers to hijack the authentication of arbitrary users for requests that trigger a logout via a SignOutNow action to people.php.
CSRF
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 58%
VendorProductVersion
lussumovanilla
𝑥
≤ 1.1.4
lussumovanilla
0.9.2
lussumovanilla
1.0.1
lussumovanilla
1.0.2
lussumovanilla
1.0.3
lussumovanilla
1.1
lussumovanilla
1.1.1
lussumovanilla
1.1.2
lussumovanilla
1.1.3
𝑥
= Vulnerable software versions