CVE
- Id
- 10829
- CVE No.
- CVE-2004-2403
- Status
- Candidate
- Description
- Cross-site request forgery (CSRF) vulnerability in YaBB 1 GOLD SP 1.3.2 allows remote attackers to perform unauthorized actions as the administrative user via a link or IMG tag to YaBB.pl that specifies the desired action, id, and moda parameters.
- Phase
- Assigned (20050817)
- Votes
- None (candidate not yet proposed)
- Comments