Multiple cross-site request forgery (CSRF) vulnerabilities in (1) addaddress.php, (2) toggleignore.php, (3) removeignore.php, and (4) removeaddress.php in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to modify settings as another user via a link or IMG tag.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2005-06-28T04:00:00

Updated: 2024-08-07T22:15:37.336Z

Reserved: 2005-06-29T00:00:00

Link: CVE-2005-2059

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2005-06-29T04:00:00.000

Modified: 2024-02-08T20:44:57.023

Link: CVE-2005-2059

cve-icon Redhat

No data.