Vulnerabilities > CVE-2020-36610 - Incorrect Authorization vulnerability in Duxcms Project Duxcms 2.1

047910
CVSS 8.0 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
duxcms-project
CWE-863

Summary

A vulnerability was found in annyshow DuxCMS 2.1. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-215116.

Vulnerable Configurations

Part Description Count
Application
Duxcms_Project
1

Common Weakness Enumeration (CWE)