CVE-2018-15850: CSRF
Published Aug 25, 2018
·Updated
An issue was discovered in REDAXO CMS 4.7.2. There is a CSRF vulnerability that can add an administrator account via index.php?page=user.
Affected Software
1 affected component
REDAXO REDAXO CMS=4.7.2
Event History
Aug 25, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the CVE ID of the vulnerability in REDAXO CMS 4.7.2?
The CVE ID of the vulnerability is CVE-2018-15850.
2
What is the severity level of CVE-2018-15850?
The severity level of CVE-2018-15850 is high with a CVSS score of 8.8.
3
How can the CSRF vulnerability in REDAXO CMS 4.7.2 be exploited?
The CSRF vulnerability can be exploited to add an administrator account via index.php?page=user in REDAXO CMS 4.7.2.
4
Is there a reference link for more information on CVE-2018-15850?
Yes, you can find more information at https://github.com/redaxo/redaxo4/issues/420.