Vulnerabilities
Vulnerable Software
Syndeocms:  >> Syndeocms  >> 2.9.00  Security Vulnerabilities
Cross-site request forgery (CSRF) vulnerability in starnet/index.php in SyndeoCMS 3.0 and earlier allows remote attackers to hijack the authentication of administrators for requests that add user accounts via a save_user action.
CVSS Score
6.8
EPSS Score
0.002
Published
2014-12-28
Cross-site scripting (XSS) vulnerability in starnet/index.php in SyndeoCMS 3.0.01 and earlier allows remote authenticated users to inject arbitrary web script or HTML via the email parameter (aka Email address field) in an edit_user configuration action.
CVSS Score
3.5
EPSS Score
0.009
Published
2012-04-17


Contact Us

Shodan ® - All rights reserved