CVE-2024-42613: CSRF
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/adminwidgets.php?action=install&widget=akismet
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-42613?
CVE-2024-42613 is classified as a Cross-Site Request Forgery (CSRF) vulnerability which can lead to unauthorized actions performed on behalf of users.
How do I fix CVE-2024-42613?
To mitigate CVE-2024-42613, it is recommended to update Pligg CMS to a version that addresses this vulnerability or implement CSRF tokens in forms.
What versions of Pligg CMS are affected by CVE-2024-42613?
CVE-2024-42613 affects Pligg CMS version 2.0.2.
What type of attack does CVE-2024-42613 enable?
CVE-2024-42613 enables attackers to perform unauthorized actions on an affected user’s behalf due to the lack of proper CSRF protection.
Is there a public exploit available for CVE-2024-42613?
As of now, there are no known public exploits specifically documented for CVE-2024-42613, but it poses a significant security risk.