CVE-2018-12603
25.06.2018, 20:29
Cross-site request forgery (CSRF) vulnerability in admin.php in LFCMS 3.7.0 allows remote attackers to hijack the authentication of unspecified users for requests that add administrator users via the s parameter, a related issue to CVE-2018-12114.
Vendor | Product | Version |
---|---|---|
lfdycms | lfcms | 3.7.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References