First published: Thu Mar 07 2019(Updated: )
EmpireCMS 7.5 allows CSRF for adding a user account via an enews=AddUser action to e/admin/user/ListUser.php, a similar issue to CVE-2018-16339.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Phome Empirecms | =7.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.