CVE-2017-11680
27.07.2017, 06:29
Cross-Site Request Forgery (CSRF) exists in Hashtopussy 0.4.0, allowing an admin password change via users.php.
Vendor | Product | Version |
---|---|---|
project_hashtopussy | hashtopussy | 𝑥 ≤ 0.4.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration