CVE-2020-20586
08.07.2021, 16:15
A cross site request forgery (CSRF) vulnerability in the /xyhai.php?s=/Auth/editUser URI of XYHCMS V3.6 allows attackers to edit any information of the administrator such as the name, e-mail, and password.
Vendor | Product | Version |
---|---|---|
xyhcms | xyhcms | 3.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration