CVE-2020-21386: CSRF
A Cross-Site Request Forgery (CSRF) in the component admin.php/admin/type/info.html of Maccms 10 allows attackers to gain administrator privileges.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-21386?
CVE-2020-21386 is a Cross-Site Request Forgery (CSRF) vulnerability in the component admin.php/admin/type/info.html of Maccms 10, which allows attackers to gain administrator privileges.
What is the severity of CVE-2020-21386?
CVE-2020-21386 has a severity rating of 8.8 (High).
How can an attacker exploit CVE-2020-21386?
An attacker can exploit CVE-2020-21386 by using Cross-Site Request Forgery (CSRF) techniques to trick a user into performing unintended actions on the affected Maccms 10 instance, resulting in the attacker gaining administrator privileges.
Is there a fix for CVE-2020-21386?
Yes, the vendor has released a fix for CVE-2020-21386. It is recommended to update to the latest version of Maccms 10 to mitigate this vulnerability.
Where can I find more information about CVE-2020-21386?
You can find more information about CVE-2020-21386 at the following reference link: [https://github.com/magicblack/maccms10/issues/126]