CVE-2018-18802

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
18/06/2019
Last modified:
18/06/2019

Description

The Tubigan "Welcome to our Resort" 1.0 software allows CSRF via admin/mod_users/controller.php?action=edit.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:tubigan:welcome_to_our_resort:1.0:*:*:*:*:*:*:*