CVE-2018-19829: CSRF
Published Dec 18, 2018
·Updated
Artica Integria IMS 5.0.83 has CSRF in godmode/usuarios/listausuarios, resulting in the ability to delete an arbitrary user when the ID number is known.
Affected Software
1 affected component
Artica Integria IMS=5.0.83
Event History
Dec 18, 2018
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is CVE-2018-19829?
CVE-2018-19829 is a Cross-Site Request Forgery (CSRF) vulnerability in Artica Integria IMS 5.0.83.
2
What is the severity of CVE-2018-19829?
CVE-2018-19829 has a severity rating of medium, with a CVSS score of 6.5.
3
How does CVE-2018-19829 impact Artica Integria IMS?
CVE-2018-19829 allows an attacker to delete an arbitrary user in Artica Integria IMS 5.0.83 if the ID number is known.
4
What is Cross-Site Request Forgery (CSRF)?
Cross-Site Request Forgery (CSRF) is an attack that tricks the victim into submitting a malicious request that the website accepts, resulting in unauthorized actions.
5
How can I fix the CSRF vulnerability in Artica Integria IMS 5.0.83?
To fix the CSRF vulnerability in Artica Integria IMS 5.0.83, apply the necessary patches or updates provided by the vendor.