An issue was discovered in ProVide (formerly zFTPServer) through 13.1. CSRF exists in the User Web Interface, as demonstrated by granting filesystem access to the public for uploading and deleting files and directories.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-04-12T02:44:27

Updated: 2024-08-04T11:35:13.760Z

Reserved: 2020-04-12T00:00:00

Link: CVE-2020-11701

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-04-12T03:15:10.697

Modified: 2024-11-21T04:58:26.043

Link: CVE-2020-11701

cve-icon Redhat

No data.