Cross-site request forgery (CSRF) vulnerability in...
High severity
Unreviewed
Published
May 14, 2022
to the GitHub Advisory Database
•
Updated Apr 20, 2025
Description
Published by the National Vulnerability Database
Aug 23, 2017
Published to the GitHub Advisory Database
May 14, 2022
Last updated
Apr 20, 2025
Cross-site request forgery (CSRF) vulnerability in Apache2Triad 1.5.4 allows remote attackers to hijack the authentication of authenticated users for requests that (1) add or (2) delete user accounts via a request to phpsftpd/users.php.
References