CVE-2020-9341
EUVD-2020-3016222.02.2020, 22:15
CandidATS 2.1.0 is vulnerable to CSRF that allows for an administrator account to be added via the index.php?m=settings&a=addUser URI.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| auieo | candidats | 2.1.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration