In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Cross-site Request Forgery (CSRF) vulnerabilities in an interactive lesson.
Start learningUpgrade admidio/admidio to version 5.0.10 or higher.
admidio/admidio is a free open source user management system for websites of organizations and groups.
Affected versions of this package are vulnerable to Cross-site Request Forgery (CSRF) via the export process in modules/sso/keys.php when CSRF validation is not enforced. An attacker can trigger the export of sensitive PKCS#12 private key material by enticing an authenticated administrator to visit a malicious site that issues a forged POST request.