Cross Site Request Forgery (CSRF) vulnerability exists in EyouCMS 1.3.6 that can add an htm page to execute the js code via login.php?m=admin&c=Filemanager&a=newfile&lang=cn.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/eyoucms/eyoucms/issues/5 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2021-08-19T18:01:33
Updated: 2024-08-04T14:22:25.271Z
Reserved: 2020-08-13T00:00:00
Link: CVE-2020-20642
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-08-19T19:15:07.143
Modified: 2024-11-21T05:12:11.567
Link: CVE-2020-20642
Redhat
No data.