CVE-2020-8424

Publication date

2020-01-28 22:11:01

Family

mitre

State

PUBLISHED

Description

Cups Easy (Purchase & Inventory) 1.0 is vulnerable to CSRF that leads to admin account takeover via passwordmychange.php.