CVE-2009-0969
19.03.2009, 10:30
Cross-site request forgery (CSRF) vulnerability in account/settings/account/index.php in phpFoX 1.6.21 allows remote attackers to hijack the authentication of administrators for requests that change the email address via the act[update] action.
Vendor | Product | Version |
---|---|---|
phpfox | phpfox | 1.6.2.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References