Showing 1 vulnerability on this page for Sistem Informasi Pengumuman Kelulusan Online

Signals CISA KEV Ransomware Nuclei
Adikiss vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Sistem Informasi Pengumuman Kelulusan Online 1.0 - Cross-Site Request Forgery

Sistem Informasi Pengumuman Kelulusan Online 1.0 contains a cross-site request forgery vulnerability that allows attackers to add unauthorized admin users through the tambahuser.php endpoint. Attackers can craft a malicious HTML form to submit admin credentials and create new administrative accounts without the victim's consent.

CWE-352Jan 30, 2026
CVSS5.1v4.0EPSS0.179%PoCs1SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX