Vulnerabilities (CVE)

Filtered by vendor Phpcoo Subscribe
Filtered by product Oecms
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-1010112 1 Phpcoo 1 Oecms 2024-11-21 6.8 MEDIUM 8.8 HIGH
OECMS v4.3.R60321 and v4.3 later is affected by: Cross Site Request Forgery (CSRF). The impact is: The victim clicks on adding an administrator account. The component is: admincp.php. The attack vector is: network connectivity. The fixed version is: v4.3.