ZeroHour

CVE-2023-6671

CVSS 3.1
8.8 high
EPSS
<1%p14
Published
()
Modified
Description

A vulnerability has been discovered on OJS, that consists in a CSRF (Cross-Site Request Forgery) attack that forces an end user to execute unwanted actions on a web application in which they're currently authenticated.

Vendors
openjournalsystems
Products
open journal systems
Weakness
CWE-352
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.