First published: Tue Aug 20 2024(Updated: )
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/admin_widgets.php?action=install&widget=akismet
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Pligg CMS | =2.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-42613 is classified as a Cross-Site Request Forgery (CSRF) vulnerability which can lead to unauthorized actions performed on behalf of users.
To mitigate CVE-2024-42613, it is recommended to update Pligg CMS to a version that addresses this vulnerability or implement CSRF tokens in forms.
CVE-2024-42613 affects Pligg CMS version 2.0.2.
CVE-2024-42613 enables attackers to perform unauthorized actions on an affected user’s behalf due to the lack of proper CSRF protection.
As of now, there are no known public exploits specifically documented for CVE-2024-42613, but it poses a significant security risk.