CVE-2022-25241

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
16/02/2022
Last modified:
23/02/2022

Description

In FileCloud before 21.3, the CSV user import functionality is vulnerable to Cross-Site Request Forgery (CSRF).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:filecloud:filecloud:*:*:*:*:*:*:*:* 21.3.0.18447 (excluding)