First published: Mon May 24 2021(Updated: )
Projectworlds Online Examination System 1.0 is vulnerable to CSRF, which allows a remote attacker to delete the existing user.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SourceCodester Online Examination System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-25411 is a vulnerability in Projectworlds Online Examination System 1.0 that allows a remote attacker to delete existing users through cross-site request forgery (CSRF).
CVE-2020-25411 allows a remote attacker to exploit the system's vulnerability and delete existing users without authorization by performing a CSRF attack.
CVE-2020-25411 has a severity rating of 6.5, which is considered medium.
CVE-2020-25411 is associated with CWE-352, which is the Cross-Site Request Forgery (CSRF) vulnerability.
To fix CVE-2020-25411, it is recommended to apply the latest security patches or updates provided by the vendor. Additionally, implementing proper input validation and CSRF protection mechanisms can help mitigate the vulnerability.