CVE-2022-31295: High severity sourcecodester online discussion forum site vulnerability
Published Jun 16, 2022
·Updated
An issue in the deletepost() function of Online Discussion Forum Site 1 allows unauthenticated attackers to arbitrarily delete posts.
Affected Software
2 affected components
Online Discussion Forum Site Project Online Discussion Forum Site=1.0
Razormist Online Discussion Forum Site=1.0
Event History
Jun 16, 2022
CVE Published
via MITRE·07:13 PM
Data Sourced
via MITRE·07:13 PM
Description
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-31295?
CVE-2022-31295 is considered a high severity vulnerability due to its ability to allow unauthenticated attackers to delete posts.
2
How do I fix CVE-2022-31295?
To fix CVE-2022-31295, it's recommended to implement authentication and authorization checks in the delete_post() function.
3
Which software versions are affected by CVE-2022-31295?
CVE-2022-31295 affects version 1.0 of the Online Discussion Forum Site software.
4
Who can exploit CVE-2022-31295?
CVE-2022-31295 can be exploited by unauthenticated attackers looking to arbitrarily delete posts on the platform.
5
What function is vulnerable in CVE-2022-31295?
The delete_post() function is the vulnerable component in CVE-2022-31295.