Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-23887

YzmCMS v6.3 was discovered to contain a Cross-Site Request Forgery (CSRF) which allows attackers to arbitrarily delete user accounts via /admin/admin_manage/delete.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 44.4%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 4.3
Products affected by CVE-2022-23887
  • Yzmcms » Yzmcms » Version: 6.3
    cpe:2.3:a:yzmcms:yzmcms:6.3


Contact Us

Shodan ® - All rights reserved