A vulnerability was found in mrobit robitailletheknot. It has been classified as problematic. This affects an unknown part of the file app/filters.php of the component CSRF Token Handler. The manipulation of the argument _token leads to incorrect comparison. It is possible to initiate the attack remotely. The name of the patch is 6b2813696ccb88d0576dfb305122ee880eb36197. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217599.
References
Link | Resource |
---|---|
https://github.com/mrobit/robitailletheknot/commit/6b2813696ccb88d0576dfb305122ee880eb36197 | Patch Third Party Advisory |
https://vuldb.com/?ctiid.217599 | Permissions Required Third Party Advisory VDB Entry |
https://vuldb.com/?id.217599 | Permissions Required Third Party Advisory VDB Entry |
Configurations
Information
Published : 2023-01-07 02:15
Updated : 2023-01-12 12:03
NVD link : CVE-2014-125057
Mitre link : CVE-2014-125057
JSON object : View
CWE
CWE-697
Incorrect Comparison
Products Affected
robitailletheknot_project
- robitailletheknot