CVE-2022-27340
22.04.2022, 20:15
MCMS v5.2.7 contains a Cross-Site Request Forgery (CSRF) via /role/saveOrUpdateRole.do. This vulnerability allows attackers to escalate privileges and modify data.
Vendor | Product | Version |
---|---|---|
mingsoft | mcms | 5.2.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration