In ftcms 2.1, there is a Cross Site Request Forgery (CSRF) vulnerability in the PHP page, which causes the attacker to forge a link to trick him to click on a malicious link or visit a page containing attack code, and send a request to the server (corresponding to the identity authentication information) as the victim without the victim's knowledge.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-40342 In ftcms 2.1, there is a Cross Site Request Forgery (CSRF) vulnerability in the PHP page, which causes the attacker to forge a link to trick him to click on a malicious link or visit a page containing attack code, and send a request to the server (corresponding to the identity authentication information) as the victim without the victim's knowledge.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-03T10:29:21.080Z

Reserved: 2022-08-08T00:00:00

Link: CVE-2022-37730

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-09-07T15:15:08.340

Modified: 2024-11-21T07:15:06.777

Link: CVE-2022-37730

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.