CVE-2019-18414: CSRF
Sourcecodester Restaurant Management System 1.0 is affected by an admin/staff-exec.php Cross Site Request Forgery vulnerability due to a lack of CSRF protection. This could lead to an attacker tricking the administrator into executing arbitrary code or adding a staff entry via a crafted HTML page.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-18414?
CVE-2019-18414 is a Cross Site Request Forgery vulnerability in Sourcecodester Restaurant Management System 1.0.
How does CVE-2019-18414 affect Sourcecodester Restaurant Management System 1.0?
CVE-2019-18414 allows an attacker to trick the administrator into executing arbitrary code or adding a staff entry via a crafted HTML page.
What is the severity of CVE-2019-18414?
The severity of CVE-2019-18414 is high with a severity score of 8.8.
Is there a fix for CVE-2019-18414?
There is currently no known fix for CVE-2019-18414. It is recommended to implement strong CSRF protection in the affected system.
Where can I find more information about CVE-2019-18414?
You can find more information about CVE-2019-18414 at https://www.sevenlayers.com/index.php/263-restaurant-management-system-csrf.