weiming_wang

1 exploit Active since Jun 2025
CVE-2025-6865 WRITEUP MEDIUM WORKING POC
daicuo < 1.3.13 - Cross-Site Request Forgery via /admin.php/addon/index
A vulnerability, which was classified as problematic, was found in DaiCuo up to 1.3.13. This affects an unknown part of the file /admin.php/addon/index. The manipulation leads to cross-site request forgery. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
CVSS 4.3