ZeroHour

CVE-2018-14958

PoC
CVSS 3.0
8.8 high
EPSS
<1%p43
Published
()
Modified
Description

An issue was discovered in WeaselCMS v0.3.5. CSRF can update the website settings (such as the theme, title, and description) via index.php.

Vendors
weaselcms project
Products
weaselcms
Weakness
CWE-352
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.