CVE
- Id
- 53218
- CVE No.
- CVE-2011-5306
- Status
- Candidate
- Description
- Cross-site request forgery (CSRF) vulnerability in cgi-bin/admin/setup_edit.cgi in CosmoShop ePRO 10.05.00 allows remote attackers to hijack the authentication of administrators for requests that modify settings via a setup action.
- Phase
- Assigned (20150101)
- Votes
- None (candidate not yet proposed)
- Comments