Lucene search

K
cvelistMitreCVELIST:CVE-2012-1227
HistoryOct 03, 2022 - 4:15 p.m.

CVE-2012-1227

2022-10-0316:15:26
mitre
www.cve.org
csrf
remote attack
authentication hijacking
admin email
blog title
settings action
edit page
blog module
security vulnerability

7.2 High

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

70.4%

Multiple cross-site request forgery (CSRF) vulnerabilities in admin.php in pluck 4.7 allow remote attackers to hijack the authentication of admins for requests that (1) modify the admin email address or (2) modify the blog title via a settings action; (3) add a page via an editpage action, or (4) add a categorie via the blog module.

7.2 High

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

70.4%

Related for CVELIST:CVE-2012-1227