cross-site request forgery (CSRF) Una vulnerabilità in /admin.php?c=member&m=edit&uid=1 in FineCms dayrui 5.4 consente agli aggressori remoti di modificare la password dell’amministratore. |
http://www.iwantacve.cn/index.php/archives/49/ https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-18191 |
Vulnerabilità: CVE-2018-18191
