CVE-2020-25766: High severity Misp Misp vulnerability
An issue was discovered in MISP before 2.4.132. It can perform an unwanted action because of a POST operation on a form that is not linked to the login page.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2020-25766?
CVE-2020-25766 is an issue discovered in MISP before version 2.4.132, which allows performing an unwanted action by exploiting a POST operation on a form that is not linked to the login page.
What is the severity of CVE-2020-25766?
The severity of CVE-2020-25766 is high with a CVSS score of 7.5.
How does CVE-2020-25766 affect MISP?
CVE-2020-25766 affects MISP versions prior to 2.4.132.
How can CVE-2020-25766 be fixed?
To fix CVE-2020-25766, users should update to MISP version 2.4.132 or later.
Where can I find more information about CVE-2020-25766?
You can find more information about CVE-2020-25766 at the following references: [link1](https://github.com/MISP/MISP/commit/164963100a830234744a6004d5eda55d24e97b2a) and [link2](https://github.com/MISP/MISP/compare/v2.4.131...v2.4.132).