Medium severity4.3NVD Advisory· Published Mar 15, 2017· Updated May 13, 2026
CVE-2017-6915
CVE-2017-6915
Description
CSRF exists in BigTree CMS 4.1.18 with the colophon parameter to the admin/settings/update/ page. The Colophon can be changed.
Affected products
1- cpe:2.3:a:bigtreecms:bigtree_cms:4.1.8:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- github.com/bigtreecms/BigTree-CMS/issues/275nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.