CVEs Blog | G5 Cyber Security

CVE-2020-19886 – DBHcms v1.2.0 has no CSRF protection mechanism,as demonstrated by CSRF fo

DBHcms v1.2.0 has no CSRF protection mechanism,as demonstrated by CSRF for an /index.php?dbhcms_pid=-80&deletemenu=9 can delete any menu.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-19886

Reference (s):

Exit mobile version