CVE-2017-1000432

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
02/01/2018
Last modified:
17/01/2018

Description

Vanilla Forums below 2.1.5 are affected by CSRF leading to Deleting topics and comments from forums Admin access

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:vanillaforums:vanilla_forums:*:*:*:*:*:*:*:* 2.1.5 (excluding)