CVE-2010-5285
Collabtive 0.6.5 - Cross-Site Request Forgery in Admin User Addition
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-5285. PoCs published by Anatolia Security.
AI-analyzed exploit summary The exploit demonstrates multiple vulnerabilities in Collabtive 0.65, including non-persistent XSS, CSRF, and stored XSS. The PoC includes a CSRF HTML form that submits malicious data to elevate privileges.
Description
Cross-site request forgery (CSRF) vulnerability in admin.php in Collabtive 0.6.5 allows remote attackers to hijack the authentication of administrators for requests that add administrative users via the edituser action.
Exploits (1)
The exploit demonstrates multiple vulnerabilities in Collabtive 0.65, including non-persistent XSS, CSRF, and stored XSS. The PoC includes a CSRF HTML form that submits malicious data to elevate privileges.