TypesetterCMS v5.1 was discovered to contain a Cross-Site Request Forgery (CSRF) which is exploited via a crafted POST request.
References
Link Resource
http://typesettercms.com Product
https://github.com/Typesetter/Typesetter/issues/697 Exploit Third Party Advisory
https://www.typesettercms.com/User Permissions Required Product
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-03-25T20:40:40

Updated: 2022-03-25T20:40:40

Reserved: 2022-02-21T00:00:00


Link: CVE-2022-25523

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-03-25T21:15:09.037

Modified: 2022-03-29T18:29:29.117


Link: CVE-2022-25523

JSON object: View

cve-icon Redhat Information

No data.

CWE