CVE-2022-32175

EUVD-2022-7136
In AdGuardHome, versions v0.95 through v0.108.0-b.13 are vulnerable to Cross-Site Request Forgery (CSRF), in the custom filtering rules functionality. An attacker can persuade an authorized user to follow a malicious link, resulting in deleting/modifying the custom filtering rules.
CSRF
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.4 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L
CISA-ADPADP
5.4 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L
Base Score
CVSS 3.x
EPSS Score
Percentile: 28%
Affected Products (NVD)
VendorProductVersion
adguardadguardhome
0.95 ≤
𝑥
< 0.108
adguardadguardhome
0.108
adguardadguardhome
0.108:beta1
adguardadguardhome
0.108:beta10
adguardadguardhome
0.108:beta11
adguardadguardhome
0.108:beta12
adguardadguardhome
0.108:beta2
adguardadguardhome
0.108:beta3
adguardadguardhome
0.108:beta4
adguardadguardhome
0.108:beta5
adguardadguardhome
0.108:beta6
adguardadguardhome
0.108:beta7
adguardadguardhome
0.108:beta8
adguardadguardhome
0.108:beta9
𝑥
= Vulnerable software versions