First published: Tue Feb 18 2020(Updated: )
SOPlanning 1.45 is vulnerable to a CSRF attack that allows for arbitrary user creation via process/xajax_server.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Soplanning Soplanning | =1.45 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of SOPlanning is CVE-2020-9267.
The severity rating of CVE-2020-9267 is medium (6.5).
The CSRF attack in CVE-2020-9267 allows for arbitrary user creation via process/xajax_server.php.
Version 1.45 of SOPlanning is affected by CVE-2020-9267.
Currently, there is no known fix available for CVE-2020-9267. It is recommended to update to a patched version if one becomes available.