peter bassill · operator
$ cve CVE-2015-6517 JSON

CVE-2015-6517 EXPLOIT

6.8
MEDIUM · CVSS 2.0 · EPSS 2.6% (pctl 85)

Patch early

A public exploit exists.

Description

Cross-site request forgery (CSRF) vulnerability in phpLiteAdmin 1.1 allows remote attackers to hijack the authentication of users for requests that drop database tables via the droptable parameter to phpliteadmin.php.

Scoring

CVSS6.8 (MEDIUM, v2.0)
VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
EPSS2.6% — more likely to be exploited than 85% of all CVEs
WeaknessCWE-352
On CISA KEVno
Public exploityes
Published2015-08-18
Last modified2026-06-17

Affected (1)

VendorProduct
phpliteadmin projectphpliteadmin

Public exploits

SourceTitleDate
exploit-dbphpLiteAdmin 1.1 - Multiple Vulnerabilities2015-07-07

References

→ the Explorer  ·  watch your stack  ·  NVD