Security Advisory

CVE-2022-47130

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-02-03 00:00:00
Last updated 2025-03-26 15:40:02
Assigner mitre
State PUBLISHED

Description

A Cross-Site Request Forgery (CSRF) in Academy LMS before v5.10 allows a discount coupon to be arbitrarily created if an attacker with administrative privileges interacts on the CSRF page.