Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Anquanfuwu

#29047de 53,640
8.8CVSS total
Vulnerabilidades · 1
PT-2018-15006
8.8
2018-11-26
Sikcms · Sikcms · CVE-2018-19561
**Name of the Vulnerable Software and Affected Versions** sikcms version 1.1 **Description** The issue allows for CSRF via the "admin.php?m=Admin&c=Users&a=userAdd" endpoint to add an administrator account. **Recommendations** For version 1.1, as a temporary workaround, consider disabling access to the "admin.php?m=Admin&c=Users&a=userAdd" endpoint until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.