First published: Tue Aug 17 2021(Updated: )
Cross Site Request Forgery (CSRF) vulnerability exists in SeaCMS 10.7 in admin_manager.php, which could let a malicious user add an admin account.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Seacms Seacms | =10.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-28846 refers to a Cross Site Request Forgery (CSRF) vulnerability in Seacms 10.7.
CVE-2020-28846 has a severity rating of 6.5 (medium).
The CSRF vulnerability in admin_manager.php in Seacms 10.7 allows a malicious user to add an admin account.
At present, there is no known fix for the CSRF vulnerability in Seacms 10.7.
You can find more information about CVE-2020-28846 at the following reference: [CVE-2020-28846](https://github.com/wh1tes/wh1te_blog/issues/8)