CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.3. See the original NVD description below for full technical details.
CVE
CVE-2023-46699
Severity
MEDIUM
CVSS
4.3
EPSS
0.18%
Original NVD Description
Cross-site request forgery (CSRF) vulnerability exists in the User settings (/me) page of GROWI versions prior to v6.0.0. If a user views a malicious page while logging in, settings may be changed without the user's intention.
Related CVEs
Other vulnerabilities affecting the same vendor(s)