CVE-2022-26588
EUVD-2022-3114308.04.2022, 21:15
A Cross-Site Request Forgery (CSRF) in IceHrm 31.0.0.OS allows attackers to delete arbitrary users or achieve account takeover via the app/service.php URI.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| icehrm | icehrm | 31.0.0.os:os |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References