PT-2024-17181 · Unknown · 1000 Projects Bookstore Management System
Polaris0X1
·
Published
2024-11-25
·
Updated
2024-12-04
·
CVE-2024-11673
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
1000 Projects Bookstore Management System version 1.0
Description
A problematic issue has been found in the system, affecting some unknown processing, which leads to cross-site request forgery. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Recommendations
For version 1.0, consider implementing security measures to prevent cross-site request forgery attacks, such as validating user requests and ensuring proper session management, until a patch is available.
Exploit
Fix
Missing Authorization
CSRF
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
1000 Projects Bookstore Management System