Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Stuart Jamieson

#37686of 53,634
7.5Total CVSS
Vulnerabilities · 1
PT-2004-2891
7.5
2004-12-31
Fusetalk · Fusetalk · CVE-2004-1995
**Name of the Vulnerable Software and Affected Versions** FuseTalk version 2.0 **Description** A Cross-Site Request Forgery (CSRF) issue allows remote attackers to create arbitrary accounts via a link to "adduser.cfm". **Recommendations** For FuseTalk version 2.0, consider disabling the account creation functionality until a patch is available. Restrict access to the "adduser.cfm" endpoint to minimize the risk of exploitation.