CVE-2018-11092

An issue was discovered in the Admin Notes plugin 1.1 for MyBB. CSRF allows an attacker to remotely delete all admin notes via an admin/index.php?empty=table (aka Clear Table) action.
Configurations

Configuration 1 (hide)

cpe:2.3:a:admin_notes_project:admin_notes:1.1:*:*:*:*:mybb:*:*

History

No history.

Information

Published : 2018-05-21 14:29

Updated : 2023-12-10 12:30


NVD link : CVE-2018-11092

Mitre link : CVE-2018-11092

CVE.ORG link : CVE-2018-11092


JSON object : View

Products Affected

admin_notes_project

  • admin_notes
CWE
CWE-352

Cross-Site Request Forgery (CSRF)