CVE-2018-11493: CSRF
Published May 26, 2018
·Updated
An issue was discovered in WUZHI CMS 4.1.0. There is a CSRF vulnerability that can add a friendship link via index.php?m=link&f=index&v=add.
Affected Software
2 affected components
Wuzhicms Wuzhi Cms=4.1.0
Wuzhicms Wuzhicms=4.1.0
Event History
May 26, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Data Sourced
via NVD·06:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2018-11493?
CVE-2018-11493 is a CSRF vulnerability in WUZHI CMS 4.1.0 that allows an attacker to add a friendship link.
2
How severe is CVE-2018-11493?
CVE-2018-11493 has a severity rating of 8.8 (high).
3
How does CVE-2018-11493 affect WUZHI CMS?
CVE-2018-11493 affects WUZHI CMS version 4.1.0.
4
How can an attacker exploit CVE-2018-11493?
An attacker can exploit CVE-2018-11493 by sending a CSRF request via index.php?m=link&f=index&v=add to add a friendship link.
5
Is there a fix available for CVE-2018-11493?
There is no known fix available for CVE-2018-11493 at the moment. It is recommended to update to a newer version of WUZHI CMS if possible.