CVE

Id
10790  
CVE No.
CVE-2004-2364  
Status
Candidate  
Description
Cross-site request forgery (CSRF) vulnerability in PHPX 3.0 through 3.2.6 allows remote attackers to execute arbitrary commands via URLs that are automatically executed on behalf of the administrator, as demonstrated using (1) admin/page.php, (2) admin/news.php, (3) admin/user.php, (4) admin/images.php, (5) admin/page.php, or (6) admin/forums.php.  
Phase
Assigned (20050816)  
Votes
None (candidate not yet proposed)  
Comments