CSRF Vulnerability Allows Unauthorized Addition of Admin Account in SRCMS V2.3.1

CSRF Vulnerability Allows Unauthorized Addition of Admin Account in SRCMS V2.3.1

CVE-2018-14068 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:P

An issue was discovered in SRCMS V2.3.1. There is a CSRF vulnerability that can add an admin account via admin.php?m=Admin&c=manager&a=add.

Learn more about our Cms Pen Testing.