Description
Cross Site Request Forgery (CSRF) vulnerability exits in Catfish <=6.1.* when you upload an html file containing CSRF on the website that uses a google editor; you can specify the menu url address as your malicious url address in the Add Menu column.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-31815 | Cross Site Request Forgery (CSRF) vulnerability exits in Catfish <=6.1.* when you upload an html file containing CSRF on the website that uses a google editor; you can specify the menu url address as your malicious url address in the Add Menu column. |
References
| Link | Providers |
|---|---|
| https://github.com/xwlrbh/Catfish/issues/8 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T04:32:13.686Z
Reserved: 2021-12-13T00:00:00.000Z
Link: CVE-2021-45017
No data.
Status : Modified
Published: 2021-12-15T23:15:08.857
Modified: 2024-11-21T06:31:48.797
Link: CVE-2021-45017
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD