4.3
CVSSv3

CVE-2020-16610

Published: 28/08/2020 Updated: 02/09/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Hoosk Codeigniter CMS prior to 1.7.2 is affected by a Cross Site Request Forgery (CSRF). When an attacker induces authenticated admin user to a malicious web page, any accounts can be deleted without admin user's intention.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

hoosk hoosk

Github Repositories

Hi there ๐Ÿ‘‹ I'm a sercurity researcher and coder ๐Ÿ”ญ my blog CNVD = Chinese National Vulnerability Database ID I don't like CVE ID, because nowadays you can apply for a CVE ID even without providing any POC, and even the provided code snippet doesn't contain any vulnerabilities vulnerabilities I found IOT platform id company model vul type method X ten