CVE-2019-16059
06.09.2019, 19:15
Sentrifugo 3.2 lacks CSRF protection. This could lead to an attacker tricking the administrator into executing arbitrary code at index.php/dashboard/viewprofile via a crafted HTML page.
Vendor | Product | Version |
---|---|---|
sapplica | sentrifugo | 3.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration