CVE-2008-0472: CSRF
Published Jan 29, 2008
·Updated
Cross-site request forgery (CSRF) vulnerability in modcp.php in Woltlab Burning Board (wBB) 2.3.6 PL2 allows remote attackers to delete threads as moderators or administrators via a threaddel action.
Affected Software
1 affected component
WoltLab Burning Board=2.3.6_pl2
Event History
Jan 29, 2008
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-0472?
CVE-2008-0472 is classified as a medium severity vulnerability due to its potential to allow unauthorized thread deletion.
2
How do I fix CVE-2008-0472?
To fix CVE-2008-0472, update WoltLab Burning Board to the latest version that addresses this CSRF vulnerability.
3
What specific action can be taken by attackers exploiting CVE-2008-0472?
Attackers can exploit CVE-2008-0472 to delete threads as moderators or administrators without proper authorization.
4
Which version of WoltLab Burning Board is affected by CVE-2008-0472?
The affected version by CVE-2008-0472 is WoltLab Burning Board 2.3.6 PL2.
5
How can organizations protect themselves against CVE-2008-0472?
Organizations can protect themselves by implementing CSRF tokens in their forms and ensuring their software is up to date.