6.8
CVSSv2

CVE-2020-9341

Published: 22/02/2020 Updated: 24/02/2020
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

CandidATS 2.1.0 is vulnerable to CSRF that allows for an administrator account to be added via the index.php?m=settings&a=addUser URI.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

auieo candidats 2.1.0

Github Repositories

Exploits for the CandidATS Web Application

CandidATS Exploits for the CandidATS Web Application CVE-2020-9341