CVE-2022-3585: SourceCodester Simple Cold Storage Management System Contact Us cross-site request forgery
Published Oct 18, 2022
·Updated
A vulnerability classified as problematic has been found in SourceCodester Simple Cold Storage Management System 1.0. Affected is an unknown function of the file /csms/?page=contactus of the component Contact Us. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-211194 is the identifier assigned to this vulnerability.
Affected Software
2 affected components
oretnom23 Simple Cold Storage Management System=1.0
Simple Cold Storage Management System Project Simple Cold Storage Management System=1.0
Event History
Oct 18, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-3585.
2
What is the severity of CVE-2022-3585?
The severity of CVE-2022-3585 is medium (4.3).
3
What is the affected software?
The affected software is Simple Cold Storage Management System 1.0.
4
What is the CWE number for CVE-2022-3585?
The CWE numbers for CVE-2022-3585 are 352, 862, and 863.
5
How can I fix CVE-2022-3585?
To fix CVE-2022-3585, apply the latest security patches provided by the software vendor.