CVE-2007-5917

Skalinks <1.5 - CSRF

Title source: llm

Description

Cross-site request forgery (CSRF) vulnerability in admin/admin_account.php in Skalinks 1.5 and earlier allows remote attackers to add arbitrary privileged accounts as administrators via the admin_name, admin_password, admin_type, and Add_admin parameters.

Scores

EPSS 0.0029
EPSS Percentile 51.7%

Classification

CWE
CWE-352
Status draft

Affected Products (1)

skalinks/skalinks

Timeline

Published Nov 10, 2007
Tracked Since Feb 18, 2026