PT-2024-19916 · Cincopa · Cincopa Post Video Players

Nguyen Thi Huyen Trang - Skalucy

+1

·

Published

2024-03-27

·

Updated

2024-03-27

·

CVE-2024-23515

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions Cincopa Post Video Players versions 1.159 and earlier
Description A Cross-Site Request Forgery (CSRF) issue affects Cincopa Post Video Players. This issue allows for malicious requests to be made on behalf of the user without their knowledge or consent.
Recommendations For versions 1.159 and earlier, update to a version that includes a fix for this issue, as no specific workaround is provided for these versions. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

CSRF

Weakness Enumeration

Related Identifiers

CVE-2024-23515

Affected Products

Cincopa Post Video Players