Open-AudIT Professional 2.1 has CSRF, as demonstrated by...
High severity
Unreviewed
Published
May 13, 2022
to the GitHub Advisory Database
•
Updated Feb 1, 2023
Description
Published by the National Vulnerability Database
Mar 25, 2018
Published to the GitHub Advisory Database
May 13, 2022
Last updated
Feb 1, 2023
Open-AudIT Professional 2.1 has CSRF, as demonstrated by modifying a user account or inserting XSS sequences via the credentials URI.
References