packetstormsecurity.com
http://packetstormsecurity.com/files/133498/Autoexchanger-5.1.0-Cross-Site-Request-Forgery.html CVE-2015-6827
Auto-Exchanger 5.1.0 - Cross-Site Request Forgery
Record summary
CVE-2015-6827 has a selected CVSS score of 6.8; EIP currently links 1 catalogued exploit.
Description
Cross-site request forgery (CSRF) vulnerability in Auto-Exchanger 5.1.0 allows remote attackers to hijack the authentication of users for requests that change a password via a request to signup.php.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBAuto-Exchanger 5.1.0 - Cross-Site Request ForgeryExploitDB exploitby Aryan BayaninejadNot analyzed1 file
References
3nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2015-6827 38119exploit
https://www.exploit-db.com/exploits/38119