CVE-2024-22818: CSRF
Published Jan 18, 2024
·Updated
FlyCms v1.0 contains a Cross-Site Request Forgery (CSRF) vulnerbility via /system/site/filterKeywordsave
Affected Software
1 affected component
Flycms Project Flycms=1.0
Event History
Jan 18, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-22818?
CVE-2024-22818 has been classified with a medium severity due to its potential for exploitation through CSRF attacks.
2
How do I fix CVE-2024-22818?
To fix CVE-2024-22818, ensure that CSRF protection mechanisms are implemented on the '/system/site/filterKeyword_save' endpoint.
3
What kind of vulnerability is CVE-2024-22818?
CVE-2024-22818 is a Cross-Site Request Forgery (CSRF) vulnerability.
4
Which version of FlyCms is affected by CVE-2024-22818?
CVE-2024-22818 affects FlyCms version 1.0.
5
What can an attacker achieve by exploiting CVE-2024-22818?
An attacker exploiting CVE-2024-22818 could perform unauthorized actions on behalf of users without their consent.