CVE-2005-3129: CSRF
Published Oct 4, 2005
·Updated
Cross-site request forgery (CSRF) vulnerability in Serendipity 0.8.4 and earlier allows remote attackers to perform unauthorized actions as a logged in user via a link or IMG tag to serendipityadmin.php.
Affected Software
1 affected component
S9Y serendipity<=0.8.4
Remediation
Patch Available
Event History
Oct 4, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-3129?
CVE-2005-3129 is classified as a medium severity vulnerability due to its potential to allow unauthorized actions by attackers.
2
How do I fix CVE-2005-3129?
To fix CVE-2005-3129, upgrade to Serendipity version 0.8.5 or later which addresses the CSRF vulnerability.
3
What type of vulnerability is CVE-2005-3129?
CVE-2005-3129 is a Cross-site Request Forgery (CSRF) vulnerability affecting Serendipity software.
4
What versions of Serendipity are affected by CVE-2005-3129?
CVE-2005-3129 affects Serendipity versions 0.8.4 and earlier.
5
What are the potential impacts of CVE-2005-3129?
The potential impact of CVE-2005-3129 includes unauthorized actions performed by an attacker while impersonating a logged-in user.