CVE-2020-10491: CSRF
Published Mar 12, 2020
·Updated
CSRF in admin/manage-departments.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to add a department via a crafted request.
Affected Software
1 affected component
Chadhaajay Phpkb=9.0
Event History
Mar 12, 2020
CVE Published
via MITRE·01:05 PM
Data Sourced
via MITRE·01:05 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for Chadha PHPKB Standard Multi-Language 9?
The vulnerability ID for Chadha PHPKB Standard Multi-Language 9 is CVE-2020-10491.
2
What is the severity level of CVE-2020-10491?
The severity level of CVE-2020-10491 is medium.
3
How can an attacker exploit CVE-2020-10491?
An attacker can exploit CVE-2020-10491 by adding a department via a crafted request in admin/manage-departments.php.
4
What is the affected software for CVE-2020-10491?
The affected software for CVE-2020-10491 is Chadha PHPKB Standard Multi-Language 9.
5
Are there any references for more information about CVE-2020-10491?
Yes, you can find more information about CVE-2020-10491 at http://antoniocannito.it/?p=343#csrf14 and https://antoniocannito.it/phpkb3#cross-site-request-forgery-when-adding-a-department-cve-2020-10491.