An issue was discovered in XiaoCms X1 v20140305. There is a CSRF vulnerability to change the administrator account password via admin/index.php?c=index&a=my.
References
Link Resource
https://github.com/rebill/xiaocms-x1/issues/1 Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2018-07-17T02:00:00

Updated: 2018-07-17T02:57:01

Reserved: 2018-07-16T00:00:00


Link: CVE-2018-14331

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-07-17T02:29:00.283

Modified: 2018-09-17T13:24:04.017


Link: CVE-2018-14331

JSON object: View

cve-icon Redhat Information

No data.

CWE