CVE-2019-13086 – core/MY_Security.php in CSZ CMS 1.2.2 before 2019-06-20 has member/login/check SQL injecti …

Vuln ID: CVE-2019-13086

Published:  2019-06-30  17:15:09Z

Description: core/MY_Security.php in CSZ CMS 1.2.2 before 2019-06-20 has member/login/check SQL injection by sending a crafted HTTP User-Agent header and omitting the csrf_csz parameter.

Source: NVD.NIST.GOV

 


Date:

Categorie(s):

Tag(s):