CVE-2020-25411: CSRF
Projectworlds Online Examination System 1.0 is vulnerable to CSRF, which allows a remote attacker to delete the existing user.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-25411?
CVE-2020-25411 is a vulnerability in Projectworlds Online Examination System 1.0 that allows a remote attacker to delete existing users through cross-site request forgery (CSRF).
How does CVE-2020-25411 impact the system?
CVE-2020-25411 allows a remote attacker to exploit the system's vulnerability and delete existing users without authorization by performing a CSRF attack.
What is the severity of CVE-2020-25411?
CVE-2020-25411 has a severity rating of 6.5, which is considered medium.
What is the Common Weakness Enumeration (CWE) ID associated with CVE-2020-25411?
CVE-2020-25411 is associated with CWE-352, which is the Cross-Site Request Forgery (CSRF) vulnerability.
How do I fix CVE-2020-25411?
To fix CVE-2020-25411, it is recommended to apply the latest security patches or updates provided by the vendor. Additionally, implementing proper input validation and CSRF protection mechanisms can help mitigate the vulnerability.