CSRF Vulnerability in osCommerce Phoenix CE by osCommerce
CVE-2020-27975
8.8HIGH
What is CVE-2020-27975?
A Cross-Site Request Forgery (CSRF) vulnerability exists in osCommerce Phoenix CE prior to version 1.0.5.4, specifically in the admin/define_language.php file. This flaw allows an attacker to exploit the system by tricking an authenticated admin user into unknowingly executing unauthorized actions. It's crucial for administrators to update to the latest version to protect their installations from potential exploitation.
