First published: Thu Mar 07 2019(Updated: )
An issue was discovered in Cscms 4.1.0. There is an admin.php/pay CSRF vulnerability that can change the payment account to redirect funds.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Chshcms Cscms | =4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-9598 is a CSRF vulnerability in Cscms 4.1.0 that allows an attacker to change the payment account and redirect funds.
CVE-2019-9598 has a severity rating of medium (6.5).
CVE-2019-9598 affects Cscms 4.1.0.
To fix CVE-2019-9598, it is recommended to update to a patched version of Cscms.
More information about CVE-2019-9598 can be found at the following link: [https://github.com/chshcms/cscms/issues/4](https://github.com/chshcms/cscms/issues/4)