CVE-2020-20642

Publication date

2021-08-19 18:01:33

Family

mitre

State

PUBLISHED

Description

Cross Site Request Forgery (CSRF) vulnerability exists in EyouCMS 1.3.6 that can add an htm page to execute the js code via login.php?m=admin&c=Filemanager&a=newfile&lang=cn.