First published: Tue Mar 12 2019(Updated: )
Cross-site request forgery (CSRF) vulnerability in FormCraft 1.2.1 and earlier allows remote attackers to hijack the authentication of administrators via a specially crafted page.
Credit: vultures@jpcert.or.jp vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
nCrafts FormCraft | <=1.2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2019-5920 is classified as medium due to its potential impact on administrator authentication.
To fix CVE-2019-5920, update FormCraft to the latest version that addresses the CSRF vulnerability.
FormCraft versions 1.2.1 and earlier are affected by CVE-2019-5920.
CVE-2019-5920 is a cross-site request forgery (CSRF) vulnerability.
Yes, CVE-2019-5920 can be exploited remotely by attackers to hijack the authentication of administrators.