1 results (0.004 seconds)

CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 1

DedeCMS v6.1.9 was discovered to contain a Cross-Site Request Forgery (CSRF) which allows attackers to arbitrarily add Administrator accounts and modify Admin passwords. Se descubrió que DedeCMS v6.1.9 contiene un Cross-Site Request Forgery (CSRF) que permite a los atacantes agregar arbitrariamente cuentas de Administrador y modificar contraseñas de Administrador. • https://gist.github.com/cai-niao98/77a7aa934492c2d651b37b75243eda0b https://github.com/cai-niao98/Dedecmsv6 • CWE-352: Cross-Site Request Forgery (CSRF) •