CVE-2024-42612: CSRF
Published Aug 20, 2024
·Updated
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/domainmanagement.php?whitelistadd
Affected Software
2 affected components
Pligg CMS
Pligg Pligg CMS=2.0.2
Event History
Aug 20, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-42612?
CVE-2024-42612 is considered a moderate severity Cross-Site Request Forgery vulnerability affecting Pligg CMS v2.0.2.
2
How do I fix CVE-2024-42612?
To fix CVE-2024-42612, update to the latest version of Pligg CMS or implement CSRF protection measures in your application.
3
What is affected by CVE-2024-42612?
CVE-2024-42612 affects Pligg CMS version 2.0.2 specifically regarding the domain management functionality.
4
What type of attack does CVE-2024-42612 enable?
CVE-2024-42612 enables Cross-Site Request Forgery attacks, potentially allowing unauthorized actions on behalf of authenticated users.
5
How can CVE-2024-42612 impact users?
CVE-2024-42612 can impact users by allowing attackers to gain access to sensitive data or perform actions without user consent.