Zurück zur CVE-Übersicht
CVE-2016-7904
MEDIUM(6.0)AV:N/AC:M/Au:S/C:P/I:P/A:P
Risk Signal Score15/100 — NIEDRIG
- CVSS 6 — Mittel
EPSS-Score
1%
Exploit-Wahrscheinlichkeit (30 Tage)
CVSS Score
6
Technische Schwere
Beschreibung
Cross-site request forgery (CSRF) vulnerability in CMS Made Simple before 2.1.6 allows remote attackers to hijack the authentication of administrators for requests that create accounts via an admin/adduser.php request.