Cross Site Request Forgey (CSRF) in iWebShop v5.3 allows remote atatckers to execute arbitrary code via malicious POST request to the component '/index.php?controller=system&action=admin_edit_act'.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/Aoyanm/audit/issues/2 |
![]() ![]() |
History
No history.

Status: PUBLISHED
Assigner: mitre
Published: 2021-08-31T13:15:38
Updated: 2024-08-04T14:08:30.657Z
Reserved: 2020-08-13T00:00:00
Link: CVE-2020-19047

No data.

Status : Modified
Published: 2021-08-31T14:15:25.300
Modified: 2024-11-21T05:08:55.833
Link: CVE-2020-19047

No data.