CVE-2019-8347
15.02.2019, 15:29
BEESCMS 4.0 has a CSRF vulnerability to add arbitrary VIP accounts via the admin/admin_member.php?action=add&nav=add_web_user&admin_p_nav=user URI.
Vendor | Product | Version |
---|---|---|
beescms | beescms | 4.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration