Severity
4.3MEDIUM
EPSS
0.2%
top 63.51%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 18

Description

A vulnerability classified as problematic has been found in SourceCodester Simple Cold Storage Management System 1.0. Affected is an unknown function of the file /csms/?page=contact_us of the component Contact Us. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-211194 is the identifier assigned to this vulnerability.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:NExploitability: 2.8 | Impact: 1.4

🔴Vulnerability Details

2
CVEList
SourceCodester Simple Cold Storage Management System Contact Us cross-site request forgery2022-10-18
GHSA
GHSA-r6p2-4r7p-7g2c: A vulnerability classified as problematic has been found in SourceCodester Simple Cold Storage Management System 12022-10-18
CVE-2022-3585 (MEDIUM CVSS 4.3) | A vulnerability classified as probl | cvebase.io