Security Advisory

CVE-2023-43149

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-10-12 00:00:00
Last updated 2024-09-18 15:46:54
Assigner mitre
State PUBLISHED

Description

SPA-Cart 1.9.0.3 is vulnerable to Cross Site Request Forgery (CSRF) that allows a remote attacker to add an admin user with role status.