CVE-2018-16416: CSRF
Cross-site request forgery (CSRF) vulnerability in myprofile/edit?inline= in FUEL CMS 1.4 allows remote attackers to change the administrator's password.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-16416?
CVE-2018-16416 is a Cross-site request forgery (CSRF) vulnerability in FUEL CMS 1.4 that allows remote attackers to change the administrator's password.
How severe is CVE-2018-16416?
CVE-2018-16416 is classified as a high severity vulnerability with a severity score of 8.8 out of 10.
What software versions are affected by CVE-2018-16416?
CVE-2018-16416 affects FUEL CMS version 1.4.
How can I fix CVE-2018-16416?
To fix CVE-2018-16416, it is recommended to upgrade FUEL CMS to a version that includes the security patch.
Where can I find more information about CVE-2018-16416?
You can find more information about CVE-2018-16416 at the following references: [Reference 1](http://www.iwantcve.cn/index.php/archives/48/) and [Reference 2](https://github.com/daylightstudio/FUEL-CMS/issues/481).