CVE-2020-10486: CSRF
Published Mar 12, 2020
·Updated
CSRF in admin/manage-comments.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to delete a comment via a crafted request.
Affected Software
1 affected component
Chadhaajay Phpkb=9.0
Event History
Mar 12, 2020
CVE Published
via MITRE·01:05 PM
Data Sourced
via MITRE·01:05 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this CSRF vulnerability?
The vulnerability ID for this CSRF vulnerability is CVE-2020-10486.
2
What is the severity of CVE-2020-10486?
CVE-2020-10486 has a severity rating of medium.
3
How does the CSRF vulnerability in Chadha PHPKB Standard Multi-Language 9 work?
The CSRF vulnerability in Chadha PHPKB Standard Multi-Language 9 allows attackers to delete a comment via a crafted request.
4
Is there a fix available for CVE-2020-10486?
Unfortunately, there is no information available about a fix for CVE-2020-10486 at this time.
5
Where can I find more information about CVE-2020-10486?
You can find more information about CVE-2020-10486 at the following references: http://antoniocannito.it/?p=343#csrf9, https://antoniocannito.it/phpkb3#cross-site-request-forgery-when-deleting-a-comment-cve-2020-10486