PT-2022-8286 · Corehr · Corehr Core Portal

Alessandro Magnosi

·

Published

2022-06-09

·

Updated

2022-06-15

·

CVE-2019-25064

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions CoreHR Core Portal versions prior to 27.0.8
Description A problematic issue was found, affecting an unknown function, which leads to cross site request forgery. The manipulation can be launched remotely.
Recommendations For versions prior to 27.0.8, upgrade to version 27.0.8 to address this issue.

Fix

CSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-25064

Affected Products

Corehr Core Portal