PT-2019-17923 · Unknown · Category Specific Rss Feed Subscription

Gota Abe

·

Published

2019-09-12

·

Updated

2019-09-16

·

CVE-2019-5993

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Category Specific RSS feed Subscription versions v2.0 and earlier
Description A cross-site request forgery issue allows remote attackers to hijack the authentication of administrators. The attack vector is not specified.
Recommendations For Category Specific RSS feed Subscription versions v2.0 and earlier, update to a version later than v2.0 to resolve the issue.

Fix

CSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-5993

Affected Products

Category Specific Rss Feed Subscription