Greencms · Greencms · CVE-2018-19376
**Name of the Vulnerable Software and Affected Versions**
GreenCMS version 2.3.0603
**Description**
An issue was discovered that allows attackers to delete a log file due to a CSRF vulnerability. This can be achieved via the "index.php?m=admin&c=data&a=clear" URI.
**Recommendations**
For GreenCMS version 2.3.0603, as a temporary workaround, consider restricting access to the "index.php?m=admin&c=data&a=clear" URI to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.