CVE-2020-18889
Published
CVSS v3
6.5
MEDIUM
CVSS v2
4.3
MEDIUM
Affected
1
PROJECT
Description
Cross Site Request Forgery (CSRF) vulnerability in puppyCMS v5.1 that can change the admin's password via /admin/settings.php.
Tiny, simple, flat file CMS in PHP that is SEO friendly and responsive. There's no database for this easy content management system and templates are gorgeous. Build micro sites, simple blogs by using Markdown and the included file manager. Tags:small, nano, lightweight, content management system, search engine optimization