Security Advisory

CVE-2020-23426

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-04-08 14:27:47
Last updated 2024-08-04 14:58:14
Assigner mitre
State PUBLISHED

Description

zzcms 201910 contains an access control vulnerability through escalation of privileges in /user/adv.php, which allows an attacker to modify data for further attacks such as CSRF.