Cross-site request forgery is... CVE-2023-27295

- AV AC AU C I A
发布: 2023-02-28
修订: 2023-03-04

Cross-site request forgery is facilitated by OpenCATS failure to require CSRF tokens in POST requests. An attacker can exploit this issue by creating a dummy page that executes Javascript in an authenticated user's session when visited.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息