CVE-2020-23837

Publication date

2020-09-25 03:53:35

Family

mitre

State

PUBLISHED

Description

A Cross-Site Request Forgery (CSRF) vulnerability in the Multi User plugin 1.8.2 for GetSimple CMS allows remote attackers to add admin (or other) users after an authenticated admin visits a third-party site or clicks on a URL.