Westbrookadmin/portfolioCMS

Westbrookadmin/portfolioCMS

Releases6
Frequency1 week 4 days
Last Release
Bootstrap portfolio web site with admin panel. PHP, MySQL. Fully working. Simple setup.

CVE History

CVEPublishedCVSS v3CVSS v2
7.5 HIGH

Westbrookadmin portfolioCMS v1.05 allows attackers to bypass password validation and access sensitive information via session fixation.

4.3 MEDIUM

An issue was discovered in portfolioCMS 1.0.5. There is CSRF to update the website settings via admin/aboutus.php.

6.8 MEDIUM

An issue was discovered in portfolioCMS 1.0.5. There is CSRF to create new pages via admin/portfolio.php?newpage=true.