Emlog pro2.3 is vulnerable to Cross Site Request Forgery (CSRF) via twitter.php which can be used with a XSS vulnerability to access administrator information.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/ss122-0ss/cms/blob/main/emlog-csrf.md |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-06-10T00:00:00
Updated: 2024-08-19T16:59:44.588Z
Reserved: 2024-04-05T00:00:00
Link: CVE-2024-31612
Vulnrichment
Updated: 2024-08-02T01:59:49.203Z
NVD
Status : Modified
Published: 2024-06-10T18:15:31.513
Modified: 2024-11-21T09:13:45.513
Link: CVE-2024-31612
Redhat
No data.