CSRF Vulnerability in idreamsoft iCMS Allows Deletion of Users' Articles

CSRF Vulnerability in idreamsoft iCMS Allows Deletion of Users' Articles

CVE-2019-8902 · MEDIUM Severity

AV:N/AC:M/AU:S/C:N/I:P/A:P

An issue was discovered in idreamsoft iCMS through 7.0.14. A CSRF vulnerability can delete users' articles via the public/api.php?app=user URI.

Learn more about our Api Penetration Testing.