CVE-2024-10557

Published
View on NVD ↗
CVSS v3
4.3
MEDIUM
CVSS v2
5
MEDIUM
Affected
1
PROJECT

Description

A vulnerability has been found in code-projects Blood Bank Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /file/updateprofile.php. The manipulation leads to cross-site request forgery. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

A CSRF POC for Updating the Profile of a Hospital leading to Account Takeover
GitHubGitHub