CVE-2011-0642

Network-13 N-13 News - CSRF

Title source: rule

Description

Cross-site request forgery (CSRF) vulnerability in news/admin.php in N-13 News 3.4, 3.7, and 4.0 allows remote attackers to hijack the authentication of administrators for requests that create new users via the options action. NOTE: some of these details are obtained from third party information.

Exploits (1)

exploitdb WORKING POC
by anT!-Tr0J4n · htmlwebappsphp
https://www.exploit-db.com/exploits/16013

Scores

EPSS 0.0021
EPSS Percentile 43.6%

Details

CWE
CWE-352
Status published
Products (3)
network-13/n-13_news 3.4
network-13/n-13_news 3.7
network-13/n-13_news 4.0
Published Jan 25, 2011
Tracked Since Feb 18, 2026