DedeCMS v5.7 vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2024-28684
8.8HIGH
What is CVE-2024-28684?
DedeCMS version 5.7 is susceptible to a Cross-Site Request Forgery (CSRF) attack through its component located at /dede/module_main.php. This vulnerability could allow an attacker to perform unauthorized actions on behalf of an authenticated user without their consent, leading to significant security breaches and compromised user data.
