Cross-site request forgery In phpsysinfo/phpsysinfo
Description
Phpsysinfo Cross Site Request Forgery (CSRF) vulnerability Cross Site Request Forgery (CSRF) vulnerability in Phpsysinfo version 3.4.3 allows a remote attacker to obtain sensitive information via a crafted page in the XML.php file. Phpsysinfo 3.4.3 disables the functionality by default but the users may enable the vulnerable functionality.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Component | Affected version | Patched versions |
|---|---|---|---|
debian 11 | - | ||
debian 13 | 3.4.3-1 | ||
debian 12 | - | ||
packagist | 3.4.3 | ||
debian 14 | 3.4.3-1 |
Aliases
1. 2. 3. 4. 5. 6.
References
1. 2. 3.