Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Stuart Jamieson

#37405de 53,639
7.5CVSS total
Vulnerabilidades · 1
PT-2004-2891
7.5
2004-12-31
Fusetalk · Fusetalk · CVE-2004-1995
**Name of the Vulnerable Software and Affected Versions** FuseTalk version 2.0 **Description** A Cross-Site Request Forgery (CSRF) issue allows remote attackers to create arbitrary accounts via a link to "adduser.cfm". **Recommendations** For FuseTalk version 2.0, consider disabling the account creation functionality until a patch is available. Restrict access to the "adduser.cfm" endpoint to minimize the risk of exploitation.