Description
A Cross-Site Request Forgery (CSRF) in dzzoffice 2.02.1_SC_UTF8 allows attackers to arbitrarily create user accounts and grant Administrator rights to regular users.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-46379 | A Cross-Site Request Forgery (CSRF) in dzzoffice 2.02.1_SC_UTF8 allows attackers to arbitrarily create user accounts and grant Administrator rights to regular users. |
References
History
Mon, 12 May 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-05-12T19:52:46.422Z
Reserved: 2022-10-17T00:00:00.000Z
Link: CVE-2022-43340
Updated: 2024-08-03T13:26:02.916Z
Status : Modified
Published: 2022-10-27T20:15:34.503
Modified: 2025-05-12T20:15:19.957
Link: CVE-2022-43340
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD