CSRF Vulnerability in Metinfo 5.3.18: Remote Information Disclosure via admin/interface/online/delete.php

CSRF Vulnerability in Metinfo 5.3.18: Remote Information Disclosure via admin/interface/online/delete.php

CVE-2017-12789 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:P

Metinfo 5.3.18 is affected by: Cross Site Request Forgery (CSRF). The impact is: Information Disclosure (remote). The component is: admin/interface/online/delete.php. The attack vector is: The administrator clicks on the malicious link in the login state.

Learn more about our Web Application Penetration Testing UK.