MEDIUM
Multiple cross-site request forgery (CSRF) vulnerabilities in BugTracker.NET before 2.7.2 allow remote attackers to delete arbitrary bugs and perform other administrative tasks via unspecified vectors, possibly related to delete_*.aspx pages, and massedit.aspx, subscribe.aspx, flag.aspx, and relationships.aspx
Published Jan 17, 2008
4.3
MEDIUMCVSS 2.0
EPSS 0.53%
Description
Affected products
Remediation
Metrics
References (4)
Change history (0)
No recorded changes yet.