CVE-2014-3414

Sharetronix < 3.3 - CSRF

Title source: rule

Description

Cross-site request forgery (CSRF) vulnerability in Sharetronix before 3.4 allows remote attackers to hijack the authentication of administrators for requests that add administrative privileges to a user via the admin parameter to admin/administrators.

Exploits (1)

exploitdb WORKING POC
webappsphp
https://www.exploit-db.com/exploits/33557

Scores

EPSS 0.0016
EPSS Percentile 36.3%

Details

CWE
CWE-352
Status published
Products (1)
sharetronix/sharetronix < 3.3
Published May 29, 2014
Tracked Since Feb 18, 2026