Description
Cross-Site Request Forgery (CSRF) vulnerability in NXLog Manager 5.6.5633 version. This vulnerability allows an attacker to eliminate roles within the platform by sending a specifically crafted query to the server. The vulnerability is based on the absence of proper validation of the origin of incoming requests.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-37013 | Cross-Site Request Forgery (CSRF) vulnerability in NXLog Manager 5.6.5633 version. This vulnerability allows an attacker to eliminate roles within the platform by sending a specifically crafted query to the server. The vulnerability is based on the absence of proper validation of the origin of incoming requests. |
References
History
No history.
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-09-05T18:16:01.681Z
Reserved: 2023-05-15T09:38:32.821Z
Link: CVE-2023-32792
Updated: 2024-08-02T15:25:37.009Z
Status : Modified
Published: 2023-10-03T13:15:10.443
Modified: 2024-11-21T08:04:02.250
Link: CVE-2023-32792
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD