What the vulnerability does
01Description
Cross-Site Request Forgery (CSRF) vulnerability in Atakan Au 1 click disable all.This issue affects 1 click disable all: from n/a through 1.0.1.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L
What the vulnerability does
Cross-Site Request Forgery (CSRF) vulnerability in Atakan Au 1 click disable all.This issue affects 1 click disable all: from n/a through 1.0.1.
Explanation of Vulnerability in Simple Terms
A cross-site request forgery (CSRF) vulnerability in 1 Click Disable All versions up to 1.0.1 allows an attacker to trick a site administrator into performing unintended actions. The vulnerability requires the admin to visit a malicious page while logged in. An attacker can modify site settings or disable functionality without the admin's knowledge.
What an attacker can do
Trick an admin into modifying site settings or disabling features via a malicious link or page.
Potential impact on your site
Site settings or functionality could be altered without your consent if you click a malicious link while logged in.
Conditions required to exploit
Admin must be logged in and visit an attacker-controlled page or link.
Key dates
External resources
Related vulnerabilities