Vulnerabilities
Vulnerable Software
Phparanoid:  Security Vulnerabilities
Cross-site request forgery (CSRF) vulnerability in PHParanoid before 0.5 allows remote attackers to perform unspecified actions as authenticated users via unknown vectors related to private messages.
CVSS Score
6.8
EPSS Score
0.002
Published
2008-12-30
Multiple cross-site request forgery (CSRF) vulnerabilities in PHParanoid before 0.4 allow remote attackers to hijack the authentication of arbitrary users for requests that use (1) admin.php or (2) private messages.
CVSS Score
6.8
EPSS Score
0.001
Published
2008-12-19
PHParanoid before 0.4 does not properly restrict access to the members area by unauthenticated users, which has unknown impact and remote attack vectors.
CVSS Score
6.5
EPSS Score
0.003
Published
2008-12-19


Contact Us

Shodan ® - All rights reserved