CSRF Vulnerability in FUEL CMS Admin Console
CVE-2019-15229
8.8HIGH
What is CVE-2019-15229?
FUEL CMS version 1.4.4 is susceptible to a Cross-Site Request Forgery (CSRF) vulnerability in the blocks/create/Create Blocks section of its Admin console. This weakness allows an attacker to potentially deceive the administrator into executing arbitrary commands through a specially crafted HTML page. Successful exploitation may compromise the integrity of the web application, leading to unauthorized actions and potentially significant security breaches.
