CVE-2019-7570: CSRF
Published Feb 7, 2019
·Updated
A CSRF vulnerability was found in PbootCMS v1.3.6 that can delete users via an admin.php/User/del/ucode/ URI.
Affected Software
1 affected component
Pbootcms Pbootcms=1.3.6
Event History
Feb 7, 2019
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Data Sourced
via NVD·07:29 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this CSRF vulnerability?
The vulnerability ID for this CSRF vulnerability is CVE-2019-7570.
2
What is the severity level of CVE-2019-7570?
The severity level of CVE-2019-7570 is medium (6.5).
3
How does the CSRF vulnerability in PbootCMS v1.3.6 affect the software?
The CSRF vulnerability in PbootCMS v1.3.6 can be exploited to delete users via the URI admin.php/User/del/ucode/.
4
Which version of PbootCMS is affected by this CSRF vulnerability?
The CSRF vulnerability affects PbootCMS version 1.3.6.
5
Is there a fix available for this CSRF vulnerability in PbootCMS v1.3.6?
Yes, it is recommended to update to a patched version of PbootCMS to mitigate the CSRF vulnerability.