CVE-2020-10500: CSRF
Published Mar 12, 2020
·Updated
CSRF in admin/reply-ticket.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to reply to any ticket, given the id, via a crafted request.
Affected Software
1 affected component
Chadhaajay Phpkb=9.0
Event History
Mar 12, 2020
CVE Published
via MITRE·01:06 PM
Data Sourced
via MITRE·01:06 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this CSRF vulnerability?
The vulnerability ID for this CSRF vulnerability is CVE-2020-10500.
2
What is the severity of CVE-2020-10500?
The severity of CVE-2020-10500 is medium with a severity value of 4.3.
3
How does this vulnerability allow attackers to reply to any ticket?
This vulnerability allows attackers to reply to any ticket by exploiting a CSRF vulnerability in the admin/reply-ticket.php page of Chadha PHPKB Standard Multi-Language 9.
4
What software is affected by CVE-2020-10500?
Chadha PHPKB Standard Multi-Language 9 version 9.0 is affected by CVE-2020-10500.
5
How can I fix CVE-2020-10500?
To fix CVE-2020-10500, apply the latest security patch or update to Chadha PHPKB Standard Multi-Language 9 version 9.0.