"value":"Multiple cross-site request forgery (CSRF) vulnerabilities in Quick.CMS 2.4 and Quick.CMS.Lite 2.4 allow remote attackers to hijack the authentication of the administrator for requests that (1) delete web pages via a p-delete action to admin.php, and possibly (2) delete products or (3) delete orders via unspecified vectors. NOTE: some of these details are obtained from third party information."
},
{
"lang":"es",
"value":"M\u00faltiples vulnerabilidades de falsificaci\u00f3n de petici\u00f3n en sitios cruzados (CSRF) en Quick.CMS v2.4 y Quick.CMS.Lite v2.4 permiten a atacantes remotos secuestrar la autenticaci\u00f3n del administrador en peticiones que (1) borran p\u00e1ginas web a trav\u00e9s de una acci\u00f3n p-delete a admin.php, y posiblemente (2) borrar productos o (3) borrar pedidos a trav\u00e9s de vectores de ataque sin espcificar. NOTA: alguno de estos detalles han sido obtenidos de informaci\u00f3n de terceras partes."