Cross-site request forgery in Metinfo - CVE-2017-12789
Published: May 10, 2019 / Updated: August 8, 2020
Metinfo
Detailed vulnerability description
The vulnerability allows a remote non-authenticated attacker to execute arbitrary code.
Metinfo 5.3.18 is affected by: Cross Site Request Forgery (CSRF). The impact is: Information Disclosure (remote). The component is: admin/interface/online/delete.php. The attack vector is: The administrator clicks on the malicious link in the login state.