CVE-2022-27340
22.04.2022, 20:15
MCMS v5.2.7 contains a Cross-Site Request Forgery (CSRF) via /role/saveOrUpdateRole.do. This vulnerability allows attackers to escalate privileges and modify data.
| Vendor | Product | Version |
|---|---|---|
| mingsoft | mcms | 5.2.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration