UWA 2.3.11 allows index.php?g=admin&c=admin&a=add_admin_do CSRF.
References
Link Resource
https://github.com/AvaterXXX/CVEs/blob/master/UWA.md Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-10-03T16:22:06

Updated: 2022-10-03T16:22:06

Reserved: 2022-10-03T00:00:00


Link: CVE-2018-20612

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-12-30T21:29:00.973

Modified: 2019-01-16T18:39:59.027


Link: CVE-2018-20612

JSON object: View

cve-icon Redhat Information

No data.

CWE