CVE-2018-10132: CSRF
Published Apr 16, 2018
·Updated
PbootCMS v0.9.8 has CSRF via an admin.php/Message/mod/id/19.html?backurl=/index.php request, resulting in PHP code injection in the recontent parameter.
Affected Software
1 affected component
Pbootcms Pbootcms=0.9.8
Event History
Apr 16, 2018
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-10132?
The severity of CVE-2018-10132 is high with a severity value of 8.8.
2
How does CVE-2018-10132 affect PbootCMS?
CVE-2018-10132 affects PbootCMS version 0.9.8.
3
What is the vulnerability description of CVE-2018-10132?
CVE-2018-10132 is a Cross-Site Request Forgery (CSRF) vulnerability in PbootCMS version 0.9.8, allowing PHP code injection in the recontent parameter.
4
How can I fix CVE-2018-10132 in PbootCMS?
To fix CVE-2018-10132 in PbootCMS, it is recommended to update to a patched version or apply the vendor-provided security fix.
5
Is there any additional information available for CVE-2018-10132?
Yes, you can find additional information about CVE-2018-10132 at the following reference: [Link to GitHub reference]