Vulnerabilities (CVE)

Filtered by vendor Xyhcms Subscribe
Filtered by product Xyhcms
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-14583 1 Xyhcms 1 Xyhcms 2018-09-18 6.8 MEDIUM 8.8 HIGH
xyhai.php?s=/Auth/addUser in XYHCMS 3.5 allows CSRF to add a background administrator account.