First published: Fri Aug 19 2022(Updated: )
An issue was discovered in jizhicms v2.3.1. There is a CSRF vulnerability that can add a admin.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Jizhicms Jizhicms | =2.3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2022-36577.
The severity of CVE-2022-36577 is high, with a CVSS score of 8.8.
The affected software for CVE-2022-36577 is Jizhicms version 2.3.1.
The CWE category for CVE-2022-36577 is CWE-352.
To fix the CSRF vulnerability in Jizhicms version 2.3.1, apply the latest patch or upgrade to a newer version of the software.