CVE List

CVE-2023-27234

Moderate 6.5

A Cross-Site Request Forgery (CSRF) in /Sys/index.html of Jizhicms v2.4.5 allows attackers to arbitrarily make configuration changes within the application.

Published March 15, 2023.

Affected software

Get alerts for Jizhicms Jizhicms

Reference links