Cross-site request forgery (CSRF) vulnerability in html/admin.php in TorrentFlux 2.3 allows remote attackers to hijack the authentication of administrators for requests that add new accounts via the addUser action.
References
Configurations
Information
Published : 2009-04-03 11:30
Updated : 2018-10-11 13:57
NVD link : CVE-2008-6585
Mitre link : CVE-2008-6585
JSON object : View
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
Products Affected
torrentflux
- torrentflux