High severity8.8NVD Advisory· Published Nov 12, 2018· Updated Jun 17, 2026
CVE-2018-19192
CVE-2018-19192
Description
An issue was discovered in XiaoCms 20141229. admin/index.php?c=content&a=add&catid=3 has CSRF, as demonstrated by entering news via the data[content] parameter.
Affected products
1Patches
Vulnerability mechanics
References
1- github.com/AvaterXXX/XiaoCms/blob/master/CSRF.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.