CVE Browser
CVE-2018-19319 MEDIUM
SRCMS 3.0.0 allows CSRF via admin.php?m=Admin&c=gifts&a=update to change goods prices with the super administrator's privileges.
CVSS 6.5 EPSS 0.42% Nov 16, 2018
CVE-2018-19318 HIGH
SRCMS 3.0.0 allows CSRF via admin.php?m=Admin&c=manager&a=update to change the username and password of the super administrator account.
CVSS 8.8 EPSS 0.49% Nov 16, 2018
CVE-2018-14069 HIGH
An issue was discovered in SRCMS V2.3.1. There is a CSRF vulnerability that can add a user account via admin.php?m=Admin&c=member&a=add.
CVSS 8.8 EPSS 0.50% Jul 15, 2018
CVE-2018-14068 HIGH
An issue was discovered in SRCMS V2.3.1. There is a CSRF vulnerability that can add an admin account via admin.php?m=Admin&c=manager&a=add.
CVSS 8.8 EPSS 0.65% Jul 15, 2018
Showing 1 to 4 CVEs · page 1