Home / exploitsPDF  

FatPipe Networks WARP/IPVPN/MPVPN 10.2.2 Cross Site Request Forgery

Posted on 28 September 2021

The application interface FatPipe Networks WARP/IPVPN/MPVPN version 10.2.2 allows users to perform certain actions via HTTP requests without performing any validity checks to verify the requests. This can be exploited to perform certain actions with administrative privileges if a logged-in user visits a malicious web site.

 

TOP