A Cross-Site Request Forgery (CSRF) in the component admin.php/admin/type/info.html of Maccms 10 allows malicious users to gain administrator privileges.
maccms maccms 10.0