A vulnerability classified as problematic has been found in Benner ModernaNet up to 1.2.0. Affected is an unknown function of the file /DadosPessoais/SG_Gravar. The manipulation of the argument idItAg leads to cross-site request forgery. It is possible to launch the attack remotely. Upgrading to version 1.2.1 is able to address this issue. It is recommended to upgrade the affected component.
The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor.
Link | Tags |
---|---|
https://vuldb.com/?id.296694 | vdb entry permissions required technical description |
https://vuldb.com/?ctiid.296694 | signature vdb entry permissions required |
https://vuldb.com/?submit.500575 | third party advisory vdb entry exploit |
https://github.com/yago3008/cves | third party advisory related |