CVE-2008-7192 Information

Description

Cross-site request forgery (CSRF) vulnerability in index.php in WoltLab Burning Board (wBB) 3.0.1 and possibly other 3.x versions allows remote attackers to hijack the authentication of users for requests that delete private messages via the pmID parameter in a delete action in a PM page a different vulnerability than CVE-2008-0472.

Reference

http://www.securityfocus.com/archive/1/487139/100/200/threaded https://exchange.xforce.ibmcloud.com/vulnerabilities/39990

Share on: