CVE Published: 05/07/2019 |
CVE Updated: 04/08/2024 |
CVE Year: 2019 Source: jpcert |
Vendor: WESEEK, Inc. |
Product: GROWI Status : PUBLISHED
CVE-2019-5968 Description
Cross-site request forgery (CSRF) vulnerability in GROWI v3.4.6 and earlier allows remote attackers to hijack the authentication of administrators via updating user\'s \'Basic Info\'.