Cross-Site Request Forgery (CSRF) vulnerability was discovered in the 8.3 version of Zenario Content Management System via the admin/organizer.ajax.php?path=zenario__content%2Fpanels%2Fcontent URI.
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/149851/Zenar-Content-Management-System-8.3-Cross-Site-Request-Forgery.html | Exploit Third Party Advisory VDB Entry |
http://packetstormsecurity.com/files/149851/Zenar-Content-Management-System-8.3-Cross-Site-Request-Forgery.html | Exploit Third Party Advisory VDB Entry |
Configurations
History
21 Nov 2024, 03:55
Type | Values Removed | Values Added |
---|---|---|
References | () http://packetstormsecurity.com/files/149851/Zenar-Content-Management-System-8.3-Cross-Site-Request-Forgery.html - Exploit, Third Party Advisory, VDB Entry |
Information
Published : 2018-10-19 22:29
Updated : 2024-11-21 03:55
NVD link : CVE-2018-18420
Mitre link : CVE-2018-18420
CVE.ORG link : CVE-2018-18420
JSON object : View
Products Affected
tribalsystems
- zenario
CWE
CWE-352
Cross-Site Request Forgery (CSRF)