CVE-2019-6508

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
22/01/2019
Last modified:
23/01/2019

Description

An issue was discovered in creditease-sec insight through 2018-09-11. role_perm_delete in srcpm/app/admin/views.py allows CSRF.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:creditease-sec:insight:*:*:*:*:*:*:*:* 2018-09-11 (including)


References to Advisories, Solutions, and Tools