The application was vulnerable to Cross-Site Request Forgery (CSRF) attacks, allowing an attacker to coerce users into sending malicious requests to the site to delete their account, or in rare circumstances, hijack their account and create other admin accounts.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-43588 | The application was vulnerable to Cross-Site Request Forgery (CSRF) attacks, allowing an attacker to coerce users into sending malicious requests to the site to delete their account, or in rare circumstances, hijack their account and create other admin accounts. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 06 May 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: TML
Published:
Updated: 2025-05-06T19:19:48.448Z
Reserved: 2022-09-08T00:00:00.000Z
Link: CVE-2022-40291
Updated: 2024-08-03T12:14:39.955Z
Status : Modified
Published: 2022-10-31T21:15:12.967
Modified: 2025-05-06T20:15:24.450
Link: CVE-2022-40291
No data.
OpenCVE Enrichment
No data.
EUVD