← Back to CVE List

CVE-2015-1583

Published: 2020-03-02T16:15Z
Last Modified: 2024-11-21T02:25Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Multiple cross-site request forgery (CSRF) vulnerabilities in ATutor 2.2 allow remote attackers to hijack the authentication of administrators for requests that (1) create an administrator account via a request to mods/_core/users/admins/create.php or (2) create a user account via a request to mods/_core/users/create_user.php. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt