Unrated severityNVD Advisory· Published Oct 17, 2019· Updated Aug 5, 2024
CVE-2019-17118
CVE-2019-17118
Description
A CSRF issue in WiKID 2FA Enterprise Server through 4.2.0-b2053 allows a remote attacker to trick an authenticated user into performing unintended actions such as (1) create or delete admin users; (2) create or delete groups; or (3) create, delete, enable, or disable normal users or devices.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- WiKID/2FA Enterprise Serverdescription
- Range: <=4.2.0-b2053
Patches
Vulnerability mechanics
References
4- packetstormsecurity.com/files/154912/WiKID-Systems-2FA-Enterprise-Server-4.2.0-b2032-SQL-Injection-XSS-CSRF.htmlmitrex_refsource_MISC
- seclists.org/fulldisclosure/2019/Oct/35mitremailing-listx_refsource_FULLDISC
- www.securitymetrics.com/blog/mitrex_refsource_MISC
- www.securitymetrics.com/blog/wikid-2fa-enterprise-server-csrfmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.