Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown
CVE-2013-7474
Disclosure Date: August 01, 2019 (last updated November 27, 2024)
Windu CMS 2.2 allows XSS via the name parameter to admin/content/edit or admin/content/add, or the username parameter to admin/users.
0
Attacker Value
Unknown
CVE-2013-7473
Disclosure Date: August 01, 2019 (last updated November 27, 2024)
Windu CMS 2.2 allows CSRF via admin/users/?mn=admin.message.error to add an admin account.
0