CSRF Vulnerabilities in Ozeki NG SMS Gateway 4.17.6

CSRF Vulnerabilities in Ozeki NG SMS Gateway 4.17.6

CVE-2020-14025 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Ozeki NG SMS Gateway through 4.17.6 has multiple CSRF vulnerabilities. For example, an administrator, by following a link, can be tricked into making unwanted changes such as installing new modules or changing a password.

Learn more about our Web Application Penetration Testing UK.