CSRF Vulnerabilities in Ozeki NG SMS Gateway 4.17.6
CVE-2020-14025 · HIGH Severity
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Ozeki NG SMS Gateway through 4.17.6 has multiple CSRF vulnerabilities. For example, an administrator, by following a link, can be tricked into making unwanted changes such as installing new modules or changing a password.
Learn more about our Web Application Penetration Testing UK.