CVE-2020-10499: CSRF
Published Mar 12, 2020
·Updated
CSRF in admin/manage-tickets.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to close any ticket, given the id, via a crafted request.
Affected Software
1 affected component
Chadhaajay Phpkb=9.0
Event History
Mar 12, 2020
CVE Published
via MITRE·01:06 PM
Data Sourced
via MITRE·01:06 PM
Description
Frequently Asked Questions
1
What is the CVE ID for this vulnerability?
The CVE ID for this vulnerability is CVE-2020-10499.
2
What is the severity of CVE-2020-10499?
The severity of CVE-2020-10499 is medium.
3
What is the affected software of CVE-2020-10499?
The affected software of CVE-2020-10499 is Chadha PHPKB Standard Multi-Language 9.
4
How does the vulnerability in admin/manage-tickets.php in Chadha PHPKB Standard Multi-Language 9 work?
The vulnerability allows attackers to close any ticket, given the id, via a crafted request in admin/manage-tickets.php.
5
How can I fix CVE-2020-10499?
To fix CVE-2020-10499, it is recommended to apply the latest updates or patches provided by Chadhaajay Phpkb.