Vulnerabilities > Srcms Project

DATE CVE VULNERABILITY TITLE RISK
2018-11-16 CVE-2018-19319 Cross-Site Request Forgery (CSRF) vulnerability in Srcms Project Srcms 3.0.0
SRCMS 3.0.0 allows CSRF via admin.php?m=Admin&c=gifts&a=update to change goods prices with the super administrator's privileges.
network
low complexity
srcms-project CWE-352
6.5
2018-11-16 CVE-2018-19318 Cross-Site Request Forgery (CSRF) vulnerability in Srcms Project Srcms 3.0.0
SRCMS 3.0.0 allows CSRF via admin.php?m=Admin&c=manager&a=update to change the username and password of the super administrator account.
network
low complexity
srcms-project CWE-352
8.8
2018-07-15 CVE-2018-14069 Cross-Site Request Forgery (CSRF) vulnerability in Srcms Project Srcms 2.3.1
An issue was discovered in SRCMS V2.3.1.
network
low complexity
srcms-project CWE-352
8.8
2018-07-15 CVE-2018-14068 Cross-Site Request Forgery (CSRF) vulnerability in Srcms Project Srcms 2.3.1
An issue was discovered in SRCMS V2.3.1.
network
low complexity
srcms-project CWE-352
8.8