Description

A Cross-Site Request Forgery (CSRF) vulnerability was found in SourceCodester Best House Rental Management System v1.0. This could lead to an attacker tricking the administrator into adding/modifying/deleting valid tenant data via a crafted HTML page, as demonstrated by a Delete Tenant action at the /rental/ajax.php?action=delete_tenant.

INFO

Published Date :

2024-08-08T00:00:00.000Z

Last Modified :

2024-08-09T17:48:49.815Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2024-40476 vulnerability.

Vendors Products
Mayurik
  • Best House Rental Management
Sourcecodester
  • Best House Rental Management System

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact