CVE-2012-4877: Flatnux

Medium severity, CVSS 6.8. EPSS: 1.2% chance of exploitation in the next 30 days.

Cross-site request forgery (CSRF) vulnerability in controlcenter.php in FlatnuX CMS 2011 08.09.2 and earlier allows remote attackers to hijack the authentication of administrators for requests that add user accounts.

Affected products

  • Flatnux Flatnux: up to and including 2011-08-09-2; version 2008-12-11 only; version 2009-01-27 only; version 2009-02-04 only

Published 2012-09-06. Last modified 2026-06-16.