CVE-2023-33409
Published
CVSS v3
6.5
MEDIUM
CVSS v2
N/A
Affected
2
PROJECTS
Description
Minical 1.0.0 is vulnerable to Cross Site Request Forgery (CSRF) via minical/public/application/controllers/settings/company.php.
Minical is an open-source PMS with extension management baked-in. It's designed for the companies looking for highly customizable property management software.