RO6OTXX/pescms_vulnerability

RO6OTXX/pescms_vulnerability

Releases0

CVE History

CVEPublishedCVSS v3CVSS v2
6.5 MEDIUM4.3 MEDIUM

An issue was discovered in PESCMS-V2.3.3. There is a CSRF vulnerability that can modify admin and other members' passwords.

6.5 MEDIUM4.3 MEDIUM

An issue was discovered in PESCMS-V2.3.3. There is a CSRF vulnerability that can delete import information about a user's company.

6.5 MEDIUM4.3 MEDIUM

An issue was discovered in PESCMS-V2.3.3. There is a CSRF vulnerability that allows attackers to delete admin and other members' account numbers.

6.1 MEDIUM4.3 MEDIUM

A reflected XSS was discovered in PESCMS-V2.3.3. When combined with CSRF in the same file, they can cause bigger destruction.