PT-2023-22429 · Mccms · Mccms

Nhotthat

·

Published

2023-04-28

·

Updated

2025-01-30

·

CVE-2023-29815

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions mccms version 2.6.3
Description The issue is related to Cross Site Request Forgery (CSRF), which is a type of attack that tricks a user into performing unintended actions on a web application. No information is provided about the estimated number of potentially affected devices worldwide or real-world incidents where this issue was exploited.
Recommendations For mccms version 2.6.3, update to a version that includes a fix for the CSRF issue, as no specific workaround or mitigation measures are provided in the input descriptions. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

CSRF

Weakness Enumeration

Related Identifiers

CVE-2023-29815

Affected Products

Mccms