Lucene search

K
osvGoogleOSV:CVE-2022-28921
HistoryMay 18, 2022 - 6:15 p.m.

CVE-2022-28921

2022-05-1818:15:10
Google
osv.dev
3
csrf
blogengine.net
v3.3.8.0
unauthenticated attackers
arbitrary files
hosting web server

AI Score

7.1

Confidence

High

EPSS

0.001

Percentile

40.3%

A Cross-Site Request Forgery (CSRF) vulnerability discovered in BlogEngine.Net v3.3.8.0 allows unauthenticated attackers to read arbitrary files on the hosting web server.

AI Score

7.1

Confidence

High

EPSS

0.001

Percentile

40.3%

Related for OSV:CVE-2022-28921