Cross-site request forgery (CSRF) vulnerability in engine/modules/imagepreview.php in Datalife Engine 6.7 allows remote malicious users to hijack the authentication of arbitrary users for requests that use a modified image parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
softnews media group datalife engine 6.7 |