CVE-2018-16552

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
05/09/2018
Last modified:
11/03/2021

Description

MicroPyramid Django-CRM 0.2 allows CSRF for /users/create/, /users/##/edit/, and /accounts/##/delete/ URIs.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:micropyramid:django_crm:0.2:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools