Cross-site request forgery in Metinfo - CVE-2017-12790
Published: May 9, 2019 / Updated: August 8, 2020
Metinfo
Detailed vulnerability description
The vulnerability allows a remote non-authenticated attacker to gain access to sensitive information.
Metinfo 5.3.18 is affected by: Cross Site Request Forgery (CSRF). The impact is: Information Disclosure (remote). The component is: admin/index.php. The attack vector is: The administrator clicks on the malicious link in the login state.