Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-20584
HistoryMar 14, 2022 - 12:00 a.m.

Yzmcms Cross-site Request Forgery Vulnerability (CNVD-2022-20584)

2022-03-1400:00:00
China National Vulnerability Database
www.cnvd.org.cn
12

0.001 Low

EPSS

Percentile

43.4%

Yzmcms is an open source CMS (Content Management System) for Yzmcms personal developers. YzmCMS v6.3 is vulnerable to cross-site request forgery, which can be exploited by attackers to trigger cross-site request forgery (CSRF) via the component /yzmcms/comment/index/init.html.

CPENameOperatorVersion
yzmcms yzmcmseq6.3

0.001 Low

EPSS

Percentile

43.4%

Related for CNVD-2022-20584