CVE-2017-8382: CSRF
Published May 16, 2017
·Updated
admidio 3.2.8 has CSRF in admprogram/modules/members/membersfunction.php with an impact of deleting arbitrary user accounts.
Other sources
admidio 3.2.8 has CSRF in admprogram/modules/members/membersfunction.php with an impact of deleting arbitrary user accounts.
Affected Software
2 affected componentsFixes available
composer/admidio/admidio<4.1-Beta.1
4.1-Beta.1
Admidio Admidio=3.2.8
Event History
May 16, 2017
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
May 17, 2022
Advisory Published
02:42 AM
Frequently Asked Questions
1
What is the severity of CVE-2017-8382?
CVE-2017-8382 is considered a high severity vulnerability due to its potential to delete arbitrary user accounts.
2
How do I fix CVE-2017-8382?
To fix CVE-2017-8382, upgrade to a newer version of Admidio that addresses the CSRF vulnerability.
3
What kind of vulnerability is CVE-2017-8382?
CVE-2017-8382 is a Cross-Site Request Forgery (CSRF) vulnerability.
4
Which version of Admidio is affected by CVE-2017-8382?
Admidio version 3.2.8 is affected by CVE-2017-8382.
5
What impact can CVE-2017-8382 have on users?
CVE-2017-8382 can lead to unauthorized deletion of user accounts, which poses a significant risk to user data management.