PT-2022-27727 · Unknown · Gym Management System

Published

2022-12-13

·

Updated

2022-12-15

·

CVE-2022-46062

CVSS v3.1

4.5

Medium

VectorAV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Gym Management System version 0.0.1
Description The issue is related to Cross Site Request Forgery (CSRF), which is a type of attack that tricks a user into performing unintended actions on a web application.
Recommendations For Gym Management System version 0.0.1, consider implementing proper CSRF token validation to prevent unauthorized requests. As a temporary workaround, restrict access to sensitive operations that could be exploited through CSRF attacks until a proper fix is applied.

Exploit

Fix

CSRF

Weakness Enumeration

Related Identifiers

CVE-2022-46062

Affected Products

Gym Management System