CVE-2005-1674
6.5
CVSS Score
Medium
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Link copied!
Description
Cross-Site Request Forgery (CSRF) vulnerability in Help Center Live allows remote attackers to perform actions as the administrator via a link or IMG tag to view.php.
CVSS Vector Details
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None
Affected Software Configurations
- a helpcenterlive help_center_live - * * * * * * *
Weaknesses (CWE)
- CWE-352
- CWE-352
References & External Links
External Resources
CVE History Timeline
May 26, 2005 17:45
Initial Analysis
Feb 08, 2024 20:47
Reanalysis
May 14, 2024 01:30
CVE Modified
Nov 20, 2024 23:57
CVE Modified
Jan 16, 2025 19:15
CVE Modified