CSRF Vulnerability in FineCms 5.4 Allows Password Change for Administrator

CSRF Vulnerability in FineCms 5.4 Allows Password Change for Administrator

CVE-2018-18191 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:P

Cross-site request forgery (CSRF) vulnerability in /admin.php?c=member&m=edit&uid=1 in dayrui FineCms 5.4 allows remote attackers to change the administrator's password.

Learn more about our Cms Pen Testing.