Dreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/task/changeStatus.
References
Link | Resource |
---|---|
https://github.com/moonsabc123/dreamer_cms/blob/main/Enable%20CSRF%20for%20Task%20Management%20Office.md | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2023-11-14T00:00:00
Updated: 2023-11-14T14:42:50.607914
Reserved: 2023-11-13T00:00:00
Link: CVE-2023-48020
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-11-14T15:15:07.707
Modified: 2023-11-17T21:27:51.187
Link: CVE-2023-48020
JSON object: View
Redhat Information
No data.
CWE