CVE-2019-20804

Publication date

2020-05-21 21:51:03

Family

mitre

State

PUBLISHED

Description

Gila CMS before 1.11.6 allows CSRF with resultant XSS via the admin/themes URI, leading to compromise of the admin account.