Security Advisory

CVE-2018-12603

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-06-25 20:00:00
Last updated 2024-08-05 08:38:06
Assigner mitre
State PUBLISHED

Description

Cross-site request forgery (CSRF) vulnerability in admin.php in LFCMS 3.7.0 allows remote attackers to hijack the authentication of unspecified users for requests that add administrator users via the s parameter, a related issue to CVE-2018-12114.