CVE-2020-21321

Published
View on NVD ↗
CVSS v3
4.3
MEDIUM
CVSS v2
4.3
MEDIUM
Affected
1
PROJECT

Description

emlog v6.0 contains a Cross-Site Request Forgery (CSRF) via /admin/link.php?action=addlink, which allows attackers to arbitrarily add articles.

轻量级开源建站系统
GitHubGitHub
580