Cross-site request forgery (CSRF) vulnerability in urlobox in MKPortal allows remote malicious users to delete arbitrary messages as an administrator via a delete operation in an img BBcode tag.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mkportal mkportal 1.1 |