Description
OTCMS v3.85 has CSRF in the admin/member_deal.php Admin Panel page, leading to creation of a new management group account, as demonstrated by superadmin.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-7776 | OTCMS v3.85 has CSRF in the admin/member_deal.php Admin Panel page, leading to creation of a new management group account, as demonstrated by superadmin. |
References
| Link | Providers |
|---|---|
| https://github.com/Gitaddy/vluns/blob/master/Otcms-CSRF.md |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T01:40:15.208Z
Reserved: 2019-10-09T00:00:00.000Z
Link: CVE-2019-17369
No data.
Status : Modified
Published: 2019-10-09T11:15:10.283
Modified: 2024-11-21T04:32:11.957
Link: CVE-2019-17369
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD