CVE-2018-19829

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
18/12/2018
Last modified:
30/01/2019

Description

Artica Integria IMS 5.0.83 has CSRF in godmode/usuarios/lista_usuarios, resulting in the ability to delete an arbitrary user when the ID number is known.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:artica:integria_ims:5.0.83:*:*:*:*:*:*:*