摘要:
A Cross-Site Request Forgery (CSRF) in the Admin portal of Cockpit CMS v2.5.2 allows attackers to execute arbitrary Administrator commands.
安全等级: Low
公告ID: KylinSec-SA-2023-1576
发布日期: 2023年7月31日
关联CVE: CVE-2023-37650
A Cross-Site Request Forgery (CSRF) in the Admin portal of Cockpit CMS v2.5.2 allows attackers to execute arbitrary Administrator commands.
cve名称 | 产品 | 组件 | 是否受影响 |
---|---|---|---|
CVE-2023-37650 | KY3.4-4A | cockpit | Unaffected |
CVE-2023-37650 | KY3.4-5 | cockpit | Unaffected |
CVE-2023-37650 | KY3.5.1 | cockpit | Unaffected |
CVE-2023-37650 | KY3.5.2 | cockpit | Unaffected |