CVE-2018-19546
EUVD-2018-1123526.11.2018, 07:29
JTBC(PHP) 3.0.1.7 has CSRF via the console/xml/manage.php?type=action&action=edit URI, as demonstrated by an XSS payload in the content parameter.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| jtbc | jtbc_php | 3.0.1.7 |
𝑥
= Vulnerable software versions