CVE-2022-23887
EUVD-2022-2881228.01.2022, 21:15
YzmCMS v6.3 was discovered to contain a Cross-Site Request Forgery (CSRF) which allows attackers to arbitrarily delete user accounts via /admin/admin_manage/delete.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| yzmcms | yzmcms | 6.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration