CVE-2024-42604: CSRF
Published Aug 20, 2024
·Updated
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/admingroup.php?mode=delete&groupid=3
Affected Software
1 affected component
Pligg Pligg CMS=2.0.2
Event History
Aug 20, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-42604?
CVE-2024-42604 is classified as a medium severity vulnerability due to its potential for unauthorized actions through Cross-Site Request Forgery.
2
How do I fix CVE-2024-42604?
To remediate CVE-2024-42604, it is recommended to apply patches provided by Pligg CMS and ensure CSRF protection mechanisms are implemented.
3
What software is affected by CVE-2024-42604?
CVE-2024-42604 affects Pligg CMS version 2.0.2.
4
What type of vulnerability is CVE-2024-42604?
CVE-2024-42604 is a Cross-Site Request Forgery (CSRF) vulnerability.
5
What is the impact of CVE-2024-42604?
The impact of CVE-2024-42604 could allow an attacker to perform actions on behalf of a user without their consent.