VYPR

Gazie

by Devincentiis

CVEs (1)

  • CVE-2012-1220Feb 21, 2012
    risk 0.03cvss epss 0.00

    Cross-site request forgery (CSRF) vulnerability in modules/config/admin_utente.php in GAzie 5.20 and earlier allows remote attackers to hijack the authentication of administrators for requests that change account information via an update action, as demonstrated by changing the password.