CVE-2005-2411
EPSS 0.93%tdiary - design error
發布日:2005/8/1修改日:2026/4/28
也稱為:DEBIAN-CVE-2005-2411
描述
Cross-Site Request Forgery (CSRF) vulnerability in tDiary 2.1.1, and tDiary 2.0.1 and earlier, allows remote attackers to conduct actions as another user, and execute commands on the server, via a URL that is activated by the user.
受影響套件(2)
- Debian/tdiaryfrom 0, < 2.0.2-1
- Debian/tdiaryfrom 0, < 2.0.1-1sarge1