Kliqqi 2.0.2 has CSRF in admin/admin_users.php.
The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor.
Link | Tags |
---|---|
https://github.com/Kliqqi-CMS/Kliqqi-CMS/issues/256 | issue tracking release notes exploit third party advisory |