First published: Sun Sep 02 2018(Updated: )
An issue was discovered in Cscms V4.1.8. There is a CSRF vulnerability that can modify a website's basic configuration via upload/admin.php/setting/save.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Chshcms Cscms | =4.1.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2018-16337.
The affected software version is Cscms V4.1.8.
The severity rating of this vulnerability is medium (6.5).
This vulnerability can be exploited using CSRF (Cross-Site Request Forgery) to modify a website's basic configuration.
The fix for this vulnerability may be available in a newer version of the Cscms software. It is recommended to update to the latest version to mitigate the risk.