First published: Tue May 18 2021(Updated: )
An issue was discovered in Pluck 4.7.10-dev2. There is a CSRF vulnerability that can editpage via a /admin.php?action=editpage
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Pluck CMS | =4.7.10-dev2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2020-24740.
The severity of CVE-2020-24740 is medium with a score of 4.3.
This vulnerability can be exploited through a CSRF attack by accessing the /admin.php?action=editpage URL.
The affected software version is Pluck 4.7.10-dev2.
At the moment, there is no known fix available for this vulnerability. It is recommended to monitor the GitHub issue for updates.