CVE

Id
91627  
CVE No.
CVE-2016-4808  
Status
Candidate  
Description
Web2py versions 2.14.5 and below was affected by CSRF (Cross Site Request Forgery) vulnerability, which allows an attacker to trick a logged in user to perform some unwanted actions i.e An attacker can trick an victim to disable the installed application just by sending a URL to victim.  
Phase
Assigned (20160515)  
Votes
None (candidate not yet proposed)  
Comments