CVEs Blog | G5 Cyber Security

CVE-2020-23426 – zzcms 201910 contains an access control vulnerability through escalation

zzcms 201910 contains an access control vulnerability through escalation of privileges in /user/adv.php, which allows an attacker to modify data for further attacks such as CSRF.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-23426

Reference (s):

Exit mobile version