CSRF Vulnerability in Jirafeau 3.4.1: Unprotected Delete File Feature

CSRF Vulnerability in Jirafeau 3.4.1: Unprotected Delete File Feature

CVE-2018-13407 · MEDIUM Severity

AV:N/AC:L/AU:S/C:N/I:P/A:P

A CSRF issue was discovered in Jirafeau before 3.4.1. The "delete file" feature on the admin panel is not protected against automated requests and could be abused.

Learn more about our Web Application Penetration Testing UK.