2018-08-28 19:00:00
mitre
PUBLISHED
e107 2.1.8 has CSRF in usersettings.php with an impact of changing details such as passwords of users including administrators.