← Back to CVE List

CVE-2022-28921

Published: 2022-05-18T18:15Z
Last Modified: 2024-11-21T06:58Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
A Cross-Site Request Forgery (CSRF) vulnerability discovered in BlogEngine.Net v3.3.8.0 allows unauthenticated attackers to read arbitrary files on the hosting web server. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt