Description
phpBB 3.2.8 allows a CSRF attack that can approve pending group memberships.
Remediation
References
Related Vulnerabilities
Perl Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-1487)
WordPress Plugin Fontiran Multiple Vulnerabilities (2.1)
WordPress Server-Side Request Forgery (SSRF) Vulnerability (CVE-2019-17670)
WordPress Plugin Keyword Strategy Internal Links Multiple Cross-Site Scripting Vulnerabilities (2.0)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-4295)