CSRF Vulnerability in Web2py Versions 2.14.5 and Below: Unauthorized Actions Exploitation

CSRF Vulnerability in Web2py Versions 2.14.5 and Below: Unauthorized Actions Exploitation

CVE-2016-4808 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:P

Web2py versions 2.14.5 and below was affected by CSRF (Cross Site Request Forgery) vulnerability, which allows an attacker to trick a logged in user to perform some unwanted actions i.e An attacker can trick an victim to disable the installed application just by sending a URL to victim.

Learn more about our User Device Pen Test.