PoC Index

CVE-2009-4092

MEDIUM 6.8EPSS 5.4%

Cross-site request forgery (CSRF) vulnerability in user.php in Simplog 0.9.3.2, and possibly earlier, allows remote attackers to hijack the authentication of administrators and users for requests that change passwords.

CVSS v2.0
6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
EPSS
5.37% chance of exploitation in the next 30 days, 92th percentile
Published
2009-11-27
Updated
2024-08-07

Proof-of-concept exploits (3)

ExploitDB entries (1)

References

Related