CXUUCMS V3 3.1 has a CSRF vulnerability that can add an administrator account via admin.php?c=adminuser&a=add.
References
Link | Resource |
---|---|
https://github.com/cbkhwx/cxuucmsv3/issues/5 | Exploit Third Party Advisory |
Configurations
Information
Published : 2020-12-25 20:15
Updated : 2020-12-28 12:33
NVD link : CVE-2020-35347
Mitre link : CVE-2020-35347
JSON object : View
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
Products Affected
cxuu
- cxuucms