An issue exists in Quadbase ExpressDashboard (EDAB) 7 Update 9. It allows CSRF. An attacker may be able to trick an authenticated user into changing the email address associated with their account.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
quadbase espressdashboard 7.0 |