Sploitus

CVE-2020-12257

No indexed exploits for CVE-2020-12257 yet

rConfig 3.9.4 is vulnerable to cross-site request forgery (CSRF) because it lacks implementation of CSRF protection such as a CSRF token. An attacker can leverage this vulnerability by creating a form (add a user, delete a user, or edit a user).

Affected products
Rconfig
Rconfig
= 3.9.4
Fix
Available
CVSS 3.1
8.8 HIGH
EPSS
1.4% (70th percentile)
Weakness
CWE-352
NVD status
Modified
Published
2020-05-18
CVE-2020-12257 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2020-12257 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2020-12257 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.