A Cross-Site Request Forgery (CSRF) in Sunbird DCIM...
High severity
Unreviewed
Published
Dec 17, 2024
to the GitHub Advisory Database
•
Updated Dec 17, 2024
Description
Published by the National Vulnerability Database
Dec 16, 2024
Published to the GitHub Advisory Database
Dec 17, 2024
Last updated
Dec 17, 2024
A Cross-Site Request Forgery (CSRF) in Sunbird DCIM dcTrack v9.1.2 allows authenticated attackers to escalate their privileges by forcing an Administrator user to perform sensitive requests in some admin screens.
References