An issue was discovered in Shopxian CMS 3.0.0. There is a CSRF vulnerability that can delete the specified column via index.php/contents-admin_cat-finderdel-model-ContentsCat.html?id=17.
References
Link | Resource |
---|---|
https://github.com/albert5888/CVE-Issues/blob/main/CVE-2022-38329/file.md | Exploit Issue Tracking Third Party Advisory |
https://github.com/zhangqiquan/shopxian_cms/issues/4 | Exploit Issue Tracking Third Party Advisory |
Configurations
Information
Published : 2022-09-13 14:15
Updated : 2022-09-16 17:34
NVD link : CVE-2022-38329
Mitre link : CVE-2022-38329
JSON object : View
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
Products Affected
shopxian
- shopxian_cms