CVE-2016-10766: CSRF
Published Jul 29, 2019
·Updated
edx-platform before 2016-06-06 allows CSRF.
Affected Software
1 affected component
edx edx-platform<2016-06-06
Remediation
Event History
Jul 29, 2019
CVE Published
via MITRE·04:12 PM
Data Sourced
via MITRE·04:12 PM
Description
Frequently Asked Questions
1
What is CVE-2016-10766?
CVE-2016-10766 is a vulnerability that allows for Cross-Site Request Forgery (CSRF) attacks in edx-platform before June 6, 2016.
2
How severe is CVE-2016-10766?
CVE-2016-10766 has a severity rating of 8.8 which is considered high.
3
What software is affected by CVE-2016-10766?
EdX edx-platform versions prior to June 6, 2016 are affected by CVE-2016-10766.
4
How can CVE-2016-10766 be exploited?
CVE-2016-10766 can be exploited through Cross-Site Request Forgery (CSRF) attacks.
5
Are there any fixes or patches available for CVE-2016-10766?
Yes, there is a patch available for CVE-2016-10766. You can find the patch at the provided GitHub link.