logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2022-42751

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2022-42751

Description:
CandidATS version 3.0.0 allows an external attacker to elevate privileges in the application. This is possible because the application suffers from CSRF. This allows to persuade an administrator to create a new account with administrative permissions.
Last updated date:
11/04/2022
Type:
exploit
Confidence:
HIGH
Date of publishing:
11/04/2022
Reference url to background

https://fluidattacks.com/advisories/londra/

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy