← Back to CVE List

CVE-2019-18220

Published: 2019-10-23T14:15Z
Last Modified: 2024-11-21T04:32Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Sitemagic CMS 4.4.1 is affected by a Cross-Site-Request-Forgery (CSRF) issue as it doesn't implement any method to validate incoming requests, allowing the execution of critical functionalities via spoofed requests. This behavior could be abused by a remote unauthenticated attacker to trick Sitemagic users into performing unwarranted actions. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt