Required CVE Record Information
Description
Cross-site request forgery (CSRF) vulnerability in upload/users.php in Utopia News Pro (UNP) 1.4.0 and earlier allows remote attackers to hijack the authentication of administrators for requests that add administrator accounts.
References 3 Total
- exploit-db.com: 18720 exploit
- osvdb.org: 80986 vdb-entry
- exchange.xforce.ibmcloud.com: utopianewspro-users-csrf(74760) vdb-entry
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- exploit-db.com: 18720 exploitx_transferred
- osvdb.org: 80986 vdb-entryx_transferred
- exchange.xforce.ibmcloud.com: utopianewspro-users-csrf(74760) vdb-entryx_transferred