CVE-2008-6585
Torrentflux - CSRF
Title source: ruleDescription
Cross-site request forgery (CSRF) vulnerability in html/admin.php in TorrentFlux 2.3 allows remote attackers to hijack the authentication of administrators for requests that add new accounts via the addUser action.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Michael Brooks · htmlwebappsphp
https://www.exploit-db.com/exploits/31671
References (5)
Scores
EPSS
0.0020
EPSS Percentile
41.8%
Details
CWE
CWE-352
Status
published
Products (1)
torrentflux/torrentflux
2.3
Published
Apr 03, 2009
Tracked Since
Feb 18, 2026