mirror of
https://github.com/0xMarcio/cve.git
synced 2025-06-07 13:36:36 +00:00
19 lines
671 B
Markdown
19 lines
671 B
Markdown
### [CVE-2019-9048](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-9048)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
An issue was discovered in Pluck 4.7.9-dev1. There is a CSRF vulnerability that can delete a theme (aka topic) via a /admin.php?action=theme_delete&var1= URI.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://github.com/pluck-cms/pluck/issues/69
|
|
- https://github.com/pluck-cms/pluck/issues/69
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|