CSRF Vulnerability in Kirby CMS by Kirby, Inc.
CVE-2018-14519
4.3MEDIUM
Key Information:
Badges
๐พ Exploit Exists๐ก Public PoC
What is CVE-2018-14519?
A CSRF vulnerability has been identified in Kirby CMS version 2.5.12, where the delete page functionality can be exploited by remote attackers. By crafting a malicious CSRF page, an attacker may trick a logged-in user into unknowingly triggering a page deletion. This flaw highlights the importance of implementing proper security measures to protect user interactions within web applications.
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
