CVE-2020-5745: CSRF
Published May 7, 2020
·Updated
Cross-site request forgery in TCExam 14.2.2 allows a remote attacker to perform sensitive application actions by tricking legitimate users into clicking a crafted link.
Affected Software
1 affected component
Tecnick TCExam=14.2.2
Remediation
Patch Available
Event History
May 7, 2020
CVE Published
via MITRE·04:10 PM
Data Sourced
via MITRE·04:10 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2020-5745?
CVE-2020-5745 is a vulnerability in TCExam 14.2.2 that allows a remote attacker to perform sensitive application actions by tricking legitimate users into clicking a crafted link.
2
What is the severity of CVE-2020-5745?
CVE-2020-5745 has a severity rating of 7.4, which is considered high.
3
How does CVE-2020-5745 impact TCExam 14.2.2?
CVE-2020-5745 allows a remote attacker to perform sensitive application actions by tricking legitimate users into clicking a crafted link.
4
How can I fix CVE-2020-5745?
To fix CVE-2020-5745, update TCExam to version 14.2.2 or higher.
5
Where can I find more information about CVE-2020-5745?
More information about CVE-2020-5745 can be found at https://www.tenable.com/security/research/tra-2020-31.