CVE-2018-8717

Publication date

2018-03-14 20:00:00

Family

mitre

State

PUBLISHED

Description

joyplus-cms 1.6.0 has CSRF, as demonstrated by adding an administrator account via a manager/admin_ajax.php?action=save&tab={pre}manager request.