8.8
CVSSv3

CVE-2023-43275

Published: 16/11/2023 Updated: 21/11/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Cross-Site Request Forgery (CSRF) vulnerability in DedeCMS v5.7 in 110 backend management interface via /catalog_add.php, allows malicious users to create crafted web pages due to a lack of verification of the token value of the submitted form.

Vulnerable Product Search on Vulmon Subscribe to Product

dedecms dedecms 5.7