CVE-2015-5660: CSRF
Published Oct 16, 2015
·Updated
Cross-site request forgery (CSRF) vulnerability in eXtplorer before 2.1.8 allows remote attackers to hijack the authentication of arbitrary users for requests that execute PHP code.
Affected Software
1 affected component
eXtplorer extplorer<=2.1.7
Event History
Oct 16, 2015
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-5660?
CVE-2015-5660 is considered a critical severity vulnerability due to its potential impact on user authentication.
2
How do I fix CVE-2015-5660?
To fix CVE-2015-5660, upgrade eXtplorer to version 2.1.8 or later.
3
What types of attacks are possible with CVE-2015-5660?
CVE-2015-5660 allows attackers to perform cross-site request forgery (CSRF) attacks to hijack user sessions.
4
What versions of eXtplorer are affected by CVE-2015-5660?
CVE-2015-5660 affects eXtplorer versions prior to 2.1.8.
5
Is CVE-2015-5660 a common vulnerability?
CVE-2015-5660 is a known vulnerability that has been identified in various instances of eXtplorer.