MiniCMS icon indicating copy to clipboard operation
MiniCMS copied to clipboard

I found a CSRF vulnerability

Open China-Eugene opened this issue 5 years ago • 2 comments

One: use CSRF vulnerability to delete article Vulnerability details: When the administrator logs in, opening the webpage will automatically delete the specified article. Vulnerability url: http://127.0.0.1/MiniCMS/mc-admin/post.php Vulnerability POC:

China-Eugene avatar Mar 06 '19 08:03 China-Eugene

When the administrator logs in

China-Eugene avatar Mar 06 '19 08:03 China-Eugene

Is there a patch for this vulnerability? Can you provide a patch?

zentery avatar Sep 06 '24 05:09 zentery