Medium severity6.5OSV Advisory· Published Mar 21, 2019· Updated Jun 17, 2026
CVE-2018-17996
CVE-2018-17996
Description
LayerBB before 1.1.3 allows CSRF for adding a user via admin/new_user.php, deleting a user via admin/members.php/delete_user/, and deleting content via mod/delete.php/.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
4- github.com/AndyRixon/LayerBB/commits/masternvdPatchThird Party Advisory
- packetstormsecurity.com/files/151694/LayerBB-1.1.2-Cross-Site-Request-Forgery.htmlnvdExploitThird Party AdvisoryVDB Entry
- github.com/AndyRixon/LayerBB/issues/38nvdExploitThird Party Advisory
- www.exploit-db.com/exploits/46379/nvdExploitThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.