V1n1v131r4/CSRF-on-ArGoSoft-Mail-Server

V1n1v131r4/CSRF-on-ArGoSoft-Mail-Server

Releases0
Stars2
This PoC explain how to exploit CSRF on ArGo Soft Mail Server 1.8.8.9

CVE History

CVEPublishedCVSS v3CVSS v2
8.8 HIGH6.8 MEDIUM

ArGo Soft Mail Server 1.8.8.9 is affected by Cross Site Request Forgery (CSRF) for perform remote arbitrary code execution. The component is the Administration dashboard. When using admin/user credentials, if the admin/user admin opens a website with the malicious page that will run the CSRF.