CVE-2025-25967 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Acora CMS version 10.1.1 is vulnerable to Cross-Site Request Forgery (CSRF). This flaw enables attackers to trick authenticated users into performing unauthoriz…
High CVSS: 8.8

CVE-2025-25967

Acora CMS version 10.1.1 is vulnerable to Cross-Site Request Forgery (CSRF). This flaw enables attackers to trick authenticated users into performing unauthorized actions, such as account deletion or user creation, by embedding malicious requests in external content. The lack of CSRF protections allows exploitation via crafted requests.
Vendor
Ddsn
Product
Acora Cms
CWE
CWE-352
Yayın Tarihi
2025-03-03 19:15:35
Güncelleme
2025-03-06 12:25:50
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar