Security Advisory

CVE-2019-13949

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-07-18 15:56:52
Last updated 2024-08-05 00:05:44
Assigner mitre
State PUBLISHED

Description

SyGuestBook A5 Version 1.2 has no CSRF protection mechanism, as demonstrated by CSRF for an index.php?c=Administrator&a=update admin password change.