CVE-2018-12114: CSRF
Published Jun 14, 2018
·Updated
Maccms 10 allows CSRF via admin.php/admin/admin/info.html to add user accounts.
Affected Software
1 affected component
maccms Maccms=10.0
Event History
Jun 14, 2018
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-12114?
The severity of CVE-2018-12114 is high.
2
How does CVE-2018-12114 affect Maccms 10?
CVE-2018-12114 allows CSRF attacks via admin.php/admin/admin/info.html to add user accounts in Maccms 10.
3
How can I fix CVE-2018-12114?
To fix CVE-2018-12114, apply the necessary patches or updates provided by Maccms or the vendor.
4
Are there any known exploits for CVE-2018-12114?
Yes, there are known exploits for CVE-2018-12114. You can find them at the following references: [Reference 1](http://www.iwantacve.cn/index.php/archives/42/), [Reference 2](https://www.cnblogs.com/v1vvwv/p/9168309.html), [Reference 3](https://www.exploit-db.com/exploits/44887/)
5
What is the CWE classification of CVE-2018-12114?
CVE-2018-12114 is classified with CWE-352 (Cross-Site Request Forgery).