CVE-2025-6478: CodeAstro Expense Management System cross-site request forgery
Published Jun 22, 2025
·Updated
A vulnerability was found in CodeAstro Expense Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross-site request forgery. The attack may be launched remotely.
Affected Software
2 affected components
Codeastro Expense Management System
Codeastro Expense Management System=1.0
Event History
Jun 22, 2025
CVE Published
via MITRE·01:31 PM
Data Sourced
via MITRE·01:31 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Jun 11, 58473
Event
via NVD·06:55 AM
Frequently Asked Questions
1
What is the severity of CVE-2025-6478?
CVE-2025-6478 has been rated as problematic.
2
What type of vulnerability is CVE-2025-6478?
CVE-2025-6478 is a cross-site request forgery vulnerability.
3
What systems are affected by CVE-2025-6478?
CVE-2025-6478 affects the CodeAstro Expense Management System 1.0.
4
How can CVE-2025-6478 be exploited?
CVE-2025-6478 may allow remote attackers to manipulate the system via cross-site request forgery.
5
What is the recommended action for CVE-2025-6478?
It is advised to implement CSRF protection mechanisms to mitigate CVE-2025-6478.