CLICK ME! Impact This vulnerability is capable of tricking users to switch transaction links.">Cross-Site Request Forgery (CSRF) in firefly-iii/firefly-iii - vulnerability database | Vulners.comCLICK ME! Impact This vulnerability is capable of tricking users to switch transaction links.">CLICK ME! Impact This vulnerability is capable of tricking users to switch transaction links.">CLICK ME! Impact This vulnerability is capable of tricking users to switch transaction links.">
Lucene search

K
huntrHaxatronB698D445-602D-4701-961C-DFFE6D3009B1
HistoryNov 23, 2021 - 12:59 p.m.

Cross-Site Request Forgery (CSRF) in firefly-iii/firefly-iii

2021-11-2312:59:39
haxatron
www.huntr.dev
5

0.001 Low

EPSS

Percentile

30.0%

Description

CSRF in switching transactions link

Proof of Concept

<a href="http://10.0.2.15/transactions/link/switch/{id}">CLICK ME!</a>

Impact

This vulnerability is capable of tricking users to switch transaction links.

0.001 Low

EPSS

Percentile

30.0%

Related for B698D445-602D-4701-961C-DFFE6D3009B1