Adikiss Vulnerabilities and Affected Products
Vulnerabilities associated with Sistem Informasi Pengumuman Kelulusan Online.
Products
Clear product- Sistem Informasi Pengumuman Kelulusan Online1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2020-37046MEDIUM | Sistem Informasi Pengumuman Kelulusan Online 1.0 - Cross-Site Request ForgerySistem Informasi Pengumuman Kelulusan Online 1.0 contains a cross-site request forgery vulnerability that allows attackers to add unauthorized admin users through the tambahuser.php endpoint. Attackers can craft a malicious HTML form to submit admin credentials and create new administrative accounts without the victim's consent. CWE-352Jan 30, 2026 | CVSS5.1v4.0 | EPSS0.179% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |