VYPR
Unrated severityOSV Advisory· Published Feb 11, 2019· Updated Aug 4, 2024

CVE-2019-7738

CVE-2019-7738

Description

C.P.Sub before 5.3 allows CSRF via a manage.php?p=article_del&id= URI.

Affected products

1

Patches

1
b2be52fd89b6

Update README.md

https://github.com/cooltey/c.p.subcoolteyFeb 11, 2019via osv
1 file changed · +6 5
  • README.md+6 5 modified
    @@ -49,10 +49,8 @@ PHP 公告系統,用 CSV 格式建構出來的小型 PHP 程式。
     
     <h4>版本更新</h4>
     
    -<b>2016-11-30: v5.1</b><br>
    -<li>1.加入最後瀏覽時間,以阻擋過度瀏覽而導致文章消失的問題</li>
    -<li>2.修改一些小 Bug</li>
    -<li>3.加入 IP Checker ,但好像沒什麼用</li>
    +<b>2019-02-10: v5.3</b><br>
    +<li>1.修正 CSRF 問題並新增開關 CSRF 防護的功能</li>
     
     
     
    @@ -100,6 +98,9 @@ If you have any question or suggestion about this project, please contact with m
     
     <h4>Relsease Logs</h4>
     
    +<b>2019-2-10: v5.3</b><br>
    +<li>1. Added CSRF protection</li>
    +
     <b>2017-4-6: v5.21</b><br>
     <li>1. Filter Update</li>
     
    @@ -118,7 +119,7 @@ If you have any question or suggestion about this project, please contact with m
     
     Demo 網址:http://cooltey.org/cpsub/
     
    -目前程式版本 Current Version:v5.21
    +目前程式版本 Current Version:v5.3
     
     作者 Author:Cooltey Feng
     
    

Vulnerability mechanics

Generated on May 9, 2026. Inputs: CWE entries + fix-commit diffs from this CVE's patches. Citations validated against bundle.

References

2

News mentions

0

No linked articles in our index yet.