CVE-2012-1203

Syndeocms < 3.0.00 - CSRF

Title source: rule

Description

Cross-site request forgery (CSRF) vulnerability in starnet/index.php in SyndeoCMS 3.0 and earlier allows remote attackers to hijack the authentication of administrators for requests that add user accounts via a save_user action.

Exploits (1)

exploitdb WORKING POC
by Ivano Binetti · htmlwebappsphp
https://www.exploit-db.com/exploits/18498

Scores

EPSS 0.0023
EPSS Percentile 45.5%

Details

CWE
CWE-352
Status published
Products (1)
syndeocms/syndeocms < 3.0.00
Published Dec 28, 2014
Tracked Since Feb 18, 2026