CVE-2023-46375: CSRF
Published Oct 27, 2023
·Updated
ZenTao Biz version 4.1.3 and before is vulnerable to Cross Site Request Forgery (CSRF).
Affected Software
1 affected component
Zentao Biz<=4.1.3
Event History
Oct 27, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·01:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-46375?
CVE-2023-46375 is a vulnerability in ZenTao Biz version 4.1.3 and earlier, making it susceptible to Cross Site Request Forgery (CSRF) attacks.
2
How severe is CVE-2023-46375?
CVE-2023-46375 has a severity score of 8.8 (high).
3
What is Cross Site Request Forgery (CSRF)?
Cross Site Request Forgery (CSRF) is an attack that tricks the victim into submitting a malicious request, unknowingly performing actions on their behalf.
4
How can I fix CVE-2023-46375?
To fix CVE-2023-46375, it is recommended to upgrade ZenTao Biz to a version higher than 4.1.3.
5
Where can I find more information about CVE-2023-46375?
More information about CVE-2023-46375 can be found at the following URL: [https://narrow-payment-2cd.notion.site/zentao-4-1-3-is-vulnerable-to-csrf-CVE-2023-46375-2d9d9fc2371f483eb436af20508df915]