CVE
- Id
- 67299
- CVE No.
- CVE-2013-7352
- Status
- Candidate
- Description
- Cross-site request forgery (CSRF) vulnerability in blogs/admin.php in b2evolution before 4.1.7 allows remote attackers to hijack the authentication of administrators for requests that conduct SQL injection attacks via the show_statuses[] parameter, related to CVE-2013-2945.
- Phase
- Assigned (20140402)
- Votes
- None (candidate not yet proposed)
- Comments