CSRF Vulnerability in WUZHI CMS 4.1.0
CVE-2018-11493
8.8HIGH
What is CVE-2018-11493?
A Cross-Site Request Forgery (CSRF) vulnerability has been identified in WUZHI CMS version 4.1.0. This flaw permits attackers to perform unauthorized actions by crafting a malicious request that results in the addition of friendship links. Exploiting this vulnerability can lead to manipulation of user data or the site's structure, making it essential for users to implement security measures to safeguard against such attacks.
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability Reserved
Vulnerability published
