Security Advisory

CVE-2022-28921

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-05-18 17:11:02
Last updated 2024-08-03 06:10:56
Assigner mitre
State PUBLISHED

Description

A Cross-Site Request Forgery (CSRF) vulnerability discovered in BlogEngine.Net v3.3.8.0 allows unauthenticated attackers to read arbitrary files on the hosting web server.