Vulnerabilities > Dzzoffice > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-10-27 | CVE-2022-43340 | Cross-Site Request Forgery (CSRF) vulnerability in Dzzoffice 2.02.1 A Cross-Site Request Forgery (CSRF) in dzzoffice 2.02.1_SC_UTF8 allows attackers to arbitrarily create user accounts and grant Administrator rights to regular users. | 8.8 |