Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Porhai Eung

#29431of 53,633
8.8Total CVSS
Vulnerabilities · 1
PT-2018-12285
8.8
2018-07-13
Creatiwity · Creatiwity Witycms · CVE-2018-14029
**Name of the Vulnerable Software and Affected Versions** Creatiwity wityCMS version 0.6.2 **Description** A CSRF issue exists in the admin/user/edit endpoint of Creatiwity wityCMS, allowing an attacker to take control of a user account by modifying the account's email field. **Recommendations** For Creatiwity wityCMS version 0.6.2, as a temporary workaround, consider implementing CSRF protection measures to prevent exploitation until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.