CVE-2020-26522
09.10.2020, 07:15
A cross-site request forgery (CSRF) vulnerability in mod/user/act_user.php in Garfield Petshop through 2020-10-01 allows remote attackers to hijack the authentication of administrators for requests that create new administrative accounts.
Vendor | Product | Version |
---|---|---|
garfield_petshop_project | garfield_petshop | 𝑥 ≤ 2020-10-01 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References