CVE-2020-19047
EUVD-2020-1095431.08.2021, 14:15
Cross Site Request Forgey (CSRF) in iWebShop v5.3 allows remote atatckers to execute arbitrary code via malicious POST request to the component '/index.php?controller=system&action=admin_edit_act'.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| iwebshop | iwebshop | 5.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration