Security Advisory
CVE-2018-15682
8.8
HIGH
Vulnerability Description
An issue was discovered in BTITeam XBTIT. Due to a lack of cross-site request forgery protection, it is possible to automate the action of sending private messages to users by luring an authenticated user to a web page that automatically submits a form on their behalf.
Published Date
September 5, 2018
Official Source
NIST NVD Advisory