4.5
CVE-2024-57523
- EPSS 0.48%
- Veröffentlicht 06.02.2025 19:15:19
- Zuletzt bearbeitet 05.07.2026 01:21:20
- CVE-Watchlists
- Unerledigt
Cross Site Request Forgery (CSRF) in Users.php in SourceCodester Packers and Movers Management System 1.0 allows attackers to create unauthorized admin accounts via crafted requests sent to an authenticated admin user.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Oretnom23 ≫ Packers And Movers Management System Version1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.48% | 0.392 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| CISA-ADP | 4.5 | 0.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N
|
CWE-352 Cross-Site Request Forgery (CSRF)
The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor.
https://github.com/HackWidMaddy/CVE-2024-57523.