← Back to CVE List
CVE-2019-16059
Sentrifugo 3.2 lacks CSRF protection. This could lead to an attacker tricking the administrator into executing arbitrary code at index.php/dashboard/viewprofile via a crafted HTML page.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt