e107 Cross-Site Request Forgery (CSRF) Vulnerability - CVE-2018-17081 - Vulnerability Database

e107 Cross-Site Request Forgery (CSRF) Vulnerability - CVE-2018-17081

Medium
Reference: CVE-2018-17081
Title: e107 Cross-Site Request Forgery (CSRF) Vulnerability
Overview:

e107 2.1.9 allows CSRF via e107_admin/wmessage.phpmodeampactioninlineampajax_used1ampid for changing the title of an arbitrary page.