CVE-2016-7067

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
10/09/2018
Last modified:
07/11/2023

Description

Monit before version 5.20.0 is vulnerable to a cross site request forgery attack. Successful exploitation will enable an attacker to disable/enable all monitoring for a particular host or disable/enable monitoring for a specific service.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mmonit:monit:*:*:*:*:*:*:*:* 5.20.0 (excluding)