CVE-2020-18889

Published
View on NVD ↗
CVSS v3
6.5
MEDIUM
CVSS v2
4.3
MEDIUM
Affected
1
PROJECT

Description

Cross Site Request Forgery (CSRF) vulnerability in puppyCMS v5.1 that can change the admin's password via /admin/settings.php.

Tiny, simple, flat file CMS in PHP that is SEO friendly and responsive. There's no database for this easy content management system and templates are gorgeous. Build micro sites, simple blogs by using Markdown and the included file manager. Tags:small, nano, lightweight, content management system, search engine optimization
GitHubGitHub
28