CVE ID:

CVE-2019-7738

Details:

C.P.Sub before 5.3 allows CSRF via a manage.php?p=article_del&id= URI.

References:

:https://github.com/cooltey/C.P.Sub/commit/b2be52fd89b6fd4d69d63d504bc11742cd679ebe
:https://github.com/cooltey/C.P.Sub/issues/3

ZeroDayLab Assigned Tags:

CROSS SITE SCRIPTING - What is Cross Site Scripting?