Douco DouPHP 1.5 dispone di upload / admin / manager.php? Rec = inserto CSRF per aggiungere un account amministratore. |
https://github.com/Jxysir/Douphpcms/blob/master/POC https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-20419 |
Vulnerabilità: CVE-2018-20419
