CVE-2024-42621: CSRF
Published Aug 20, 2024
·Updated
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/admineditor.php
Affected Software
1 affected component
Pligg Pligg CMS=2.0.2
Event History
Aug 20, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-42621?
CVE-2024-42621 is classified as a medium severity Cross-Site Request Forgery (CSRF) vulnerability in Pligg CMS v2.0.2.
2
How do I fix CVE-2024-42621?
To fix CVE-2024-42621, upgrade Pligg CMS to a version that has addressed the CSRF vulnerability.
3
What is the impact of CVE-2024-42621?
CVE-2024-42621 can allow attackers to perform unauthorized actions on behalf of authenticated users, potentially compromising site security.
4
Which versions of Pligg CMS are affected by CVE-2024-42621?
CVE-2024-42621 specifically affects Pligg CMS version 2.0.2.
5
Is there a public exploit for CVE-2024-42621?
As of now, there is no publicly known exploit for CVE-2024-42621, but the CSRF vulnerability poses a risk and should be mitigated.