CVE-2020-10229

A CSRF issue in vtecrm vtenext 19 CE allows attackers to carry out unwanted actions on an administrator's behalf, such as uploading files, adding users, and deleting accounts.
References
Link Resource
https://vtenext.com/en/ Product Vendor Advisory
https://www.exploit-db.com/exploits/48804 Exploit Third Party Advisory VDB Entry
https://sourceforge.net/projects/vtecrm/ Product Third Party Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:vtenext:vtenext:19:*:*:*:community:*:*:*

Information

Published : 2020-09-14 13:15

Updated : 2020-09-18 07:47


NVD link : CVE-2020-10229

Mitre link : CVE-2020-10229


JSON object : View

CWE
CWE-352

Cross-Site Request Forgery (CSRF)

Advertisement

dedicated server usa

Products Affected

vtenext

  • vtenext