CVE-2008-6585

Torrentflux - CSRF

Title source: rule

Description

Cross-site request forgery (CSRF) vulnerability in html/admin.php in TorrentFlux 2.3 allows remote attackers to hijack the authentication of administrators for requests that add new accounts via the addUser action.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Michael Brooks · htmlwebappsphp
https://www.exploit-db.com/exploits/31671

Scores

EPSS 0.0020
EPSS Percentile 41.8%

Details

CWE
CWE-352
Status published
Products (1)
torrentflux/torrentflux 2.3
Published Apr 03, 2009
Tracked Since Feb 18, 2026