CSRF Vulnerability in WSTMall v1.9.1_170316 Allows Unauthorized User Account Addition

CSRF Vulnerability in WSTMall v1.9.1_170316 Allows Unauthorized User Account Addition

CVE-2018-13010 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:P

WSTMall v1.9.1_170316 has CSRF via the index.php?m=Admin&c=Users&a=edit URI to add a user account.

Learn more about our User Device Pen Test.