iF.SVNAdmin through 1.6.2 allows svnadmin/usercreate.php CSRF to create a user.
References
Link | Resource |
---|---|
https://zeroauth.ltd/blog/2019/08/23/cve-2019-15128-if-svnadmin-through-1-6-2-allows-svnadmin-usercreate-php-csrf-to-create-a-user/ | Exploit Third Party Advisory |
https://zeroauth.ltd/blog/2019/08/23/cve-2019-15128-if-svnadmin-through-1-6-2-allows-svnadmin-usercreate-php-csrf-to-create-a-user/ | Exploit Third Party Advisory |
Configurations
History
21 Nov 2024, 04:28
Type | Values Removed | Values Added |
---|---|---|
References | () https://zeroauth.ltd/blog/2019/08/23/cve-2019-15128-if-svnadmin-through-1-6-2-allows-svnadmin-usercreate-php-csrf-to-create-a-user/ - Exploit, Third Party Advisory |
Information
Published : 2019-09-06 22:15
Updated : 2024-11-21 04:28
NVD link : CVE-2019-15128
Mitre link : CVE-2019-15128
CVE.ORG link : CVE-2019-15128
JSON object : View
Products Affected
if.svnadmin_project
- if.svnadmin
CWE
CWE-352
Cross-Site Request Forgery (CSRF)