CVE-2020-19047

Publication date

2021-08-31 13:15:38

Family

mitre

State

PUBLISHED

Description

Cross Site Request Forgey (CSRF) in iWebShop v5.3 allows remote atatckers to execute arbitrary code via malicious POST request to the component /index.php?controller=system&action=admin_edit_act.