CVE-2015-5660: Extplorer

Medium severity, CVSS 6.8. EPSS: 1% chance of exploitation in the next 30 days.

Cross-site request forgery (CSRF) vulnerability in eXtplorer before 2.1.8 allows remote attackers to hijack the authentication of arbitrary users for requests that execute PHP code.

Affected products

  • Extplorer Extplorer: up to and including 2.1.7

Published 2015-10-16. Last modified 2026-06-17.