CVE-2020-21658: CSRF
Published Oct 6, 2021
·Updated
A Cross-Site Request Forgery (CSRF) in WDJA CMS v1.5.2 allows attackers to arbitrarily add administrator accounts via a crafted URL.
Affected Software
1 affected component
WDJA WDJA CMS=1.5.2
Event History
Oct 6, 2021
CVE Published
via MITRE·09:34 PM
Data Sourced
via MITRE·09:34 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2020-21658.
2
What is the severity of CVE-2020-21658?
The severity of CVE-2020-21658 is medium with a severity value of 6.5.
3
What is the affected software of CVE-2020-21658?
The affected software of CVE-2020-21658 is WDJA CMS v1.5.2.
4
How does CVE-2020-21658 impact the affected software?
CVE-2020-21658 allows attackers to arbitrarily add administrator accounts via a crafted URL in WDJA CMS v1.5.2.
5
Is there a fix available for CVE-2020-21658?
At the time of writing, there is no known fix available for CVE-2020-21658. It is recommended to update to a newer version of the software if available or apply any patches or mitigation measures provided by the vendor.