FUEL CMS 1.4.13 contains a cross-site request forgery (CSRF) vulnerability that can delete a page via a post ID to /pages/delete/3.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2021-03-10T13:37:57

Updated: 2021-03-10T13:37:57

Reserved: 2020-11-16T00:00:00


Link: CVE-2020-28705

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-03-10T14:15:12.623

Modified: 2021-03-12T18:42:30.153


Link: CVE-2020-28705

JSON object: View

cve-icon Redhat Information

No data.

CWE