Vulnerabilities > Flycms Project > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-01-08 | CVE-2023-52072 | Cross-Site Request Forgery (CSRF) vulnerability in Flycms Project Flycms 1.0 FlyCms v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /system/site/userconfig_updagte. | 8.8 |
2024-01-08 | CVE-2023-52073 | Cross-Site Request Forgery (CSRF) vulnerability in Flycms Project Flycms 1.0 FlyCms v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /system/site/config_footer_updagte. | 8.8 |
2024-01-08 | CVE-2023-52074 | Cross-Site Request Forgery (CSRF) vulnerability in Flycms Project Flycms 1.0 FlyCms v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component system/site/webconfig_updagte. | 8.8 |
2023-05-08 | CVE-2020-36065 | Cross-Site Request Forgery (CSRF) vulnerability in Flycms Project Flycms 1.0 Cross Site Request Forgery (CSRF) vulnerability in FlyCms 1.0 allows attackers to add arbitrary administrator accounts via system/admin/admin_save. | 8.8 |