CVE-2018-11127: CSRF
Published May 15, 2018
·Updated
e107 2.1.7 has CSRF resulting in arbitrary user deletion.
Affected Software
1 affected component
e107 e107=2.1.7
Event History
May 15, 2018
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is CVE-2018-11127?
CVE-2018-11127 is a vulnerability in e107 2.1.7 that allows for CSRF attacks resulting in arbitrary user deletion.
2
How severe is CVE-2018-11127?
CVE-2018-11127 has a severity rating of medium (6.5).
3
Which version of e107 is affected by CVE-2018-11127?
CVE-2018-11127 affects e107 version 2.1.7.
4
How can I fix CVE-2018-11127?
To fix CVE-2018-11127, it is recommended to update to a version of e107 that is not affected by the vulnerability.
5
Where can I find more information about CVE-2018-11127?
More information about CVE-2018-11127 can be found at the following reference: [Link](https://github.com/e107inc/e107/issues/3128)