Record summary

CVE-2013-6826 has a selected CVSS score of 6.8; EIP currently links 1 catalogued exploit.

Description

cgi-bin/module//sysmanager/admin/SYSAdminUserDialog in Fortinet FortiAnalyzer before 5.0.5 does not properly validate the csrf_token parameter, which allows remote attackers to perform cross-site request forgery (CSRF) attacks.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBFortinet FortiAnalyzer - Cross-Site Request ForgeryExploitDB exploitby William CostaNot analyzed1 file
ExploitDB

PoC details

References

3