First published: Tue Aug 20 2024(Updated: )
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/domain_management.php?id=0&list=whitelist&remove=pligg.com
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Plikli CMS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-42619 is considered medium due to its potential impact on user privacy and integrity.
To fix CVE-2024-42619, implement anti-CSRF tokens in your forms and ensure proper validation on the server side.
CVE-2024-42619 can be exploited through a crafted URL that performs unauthorized actions without the user's consent.
CVE-2024-42619 affects all installations of Pligg CMS version 2.0.2.
The potential consequences of CVE-2024-42619 include unauthorized changes to the domain management settings of the CMS.