CVE-2018-13010

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
29/06/2018
Last modified:
24/08/2018

Description

WSTMall v1.9.1_170316 has CSRF via the index.php?m=Admin&c=Users&a=edit URI to add a user account.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:wstmall:wstmall:1.9.1_170316:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools