CSRF Vulnerability in Pluck CMS by Security BreachLock
CVE-2018-16634
8.8HIGH
What is CVE-2018-16634?
Pluck CMS v4.7.7 is susceptible to a Cross-Site Request Forgery (CSRF) vulnerability that allows attackers to manipulate admin settings through the admin.php interface. This exploitation can lead to unauthorized configuration changes without the consent of legitimate users.