6.8
CVSSv2

CVE-2012-0699

Published: 11/01/2018 Updated: 31/01/2018
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 690
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple cross-site request forgery (CSRF) vulnerabilities in Family Connections CMS (aka FCMS) 2.9 and previous versions allow remote malicious users to hijack the authentication of arbitrary users for requests that (1) add news via an add action to familynews.php or (2) add a prayer via an add action to prayers.php.

Vulnerable Product Search on Vulmon Subscribe to Product

haudenschilt family connections cms

Exploits

Family CMS 29 and earlier multiple Vulnerabilities =================================================================================== # Exploit Title: Family CMS 29 and earlier multiple Vulnerabilities # Download link :sourceforgenet/projects/fam-connections/files/Family%20Connections/29/FCMS_29zip/download # Author: Ahmed Elhady Mo ...
FCMS_272 cms and earlier multiple stored XSS Vulnerability =================================================================================== # Exploit Title: FCMS_272 cms multiple stored XSS Vulnerability Download link :sourceforgenet/projects/fam-connections/files/Family%20Connections/272/FCMS_272zip/download # Author: Ahmed E ...