CVE-2012-1897

Wolf CMS <= 0.75 - Cross-Site Request Forgery via Admin Endpoints

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2012-1897.

AI-analyzed exploit summary The exploit demonstrates multiple CSRF and XSS vulnerabilities in WolfCMS <= 0.75. It includes functional HTML/JS PoC code for CSRF attacks (deleting users, pages, directories, and forcing logout) and XSS payloads for input fields.

Description

Multiple cross-site request forgery (CSRF) vulnerabilities in Wolf CMS 0.75 and earlier allow remote attackers to hijack the authentication of administrators for requests that (1) delete users via the user id number to admin/user/delete; (2) delete pages via the page id number to admin/page/delete; delete the (3) images or (4) themes directory via the directory name to admin/plugin/file_manager/delete, and possibly other directories; or (5) logout the user via a request to admin/login/logout.

Exploits (1)

exploitdb WORKING POC
webappsphp
https://www.exploit-db.com/exploits/18652

The exploit demonstrates multiple CSRF and XSS vulnerabilities in WolfCMS <= 0.75. It includes functional HTML/JS PoC code for CSRF attacks (deleting users, pages, directories, and forcing logout) and XSS payloads for input fields.

Classification
Working Poc 100%
Attack Type
Xss | Csrf
Complexity
Trivial
Reliability
Reliable
Target: WolfCMS <= 0.75
Auth required
Prerequisites: Victim must be authenticated as admin/user · Victim must visit a crafted webpage
devstral-2 · analyzed Feb 19, 2026 Full analysis →

Scores

EPSS 0.0108
EPSS Percentile 60.6%

Details

CWE
CWE-352
Status published
Products (7)
wolfcms/wolf_cms 0.5.0
wolfcms/wolf_cms 0.5.5
wolfcms/wolf_cms 0.6.0
wolfcms/wolf_cms 0.7.0
wolfcms/wolf_cms 0.7.2
wolfcms/wolf_cms 0.7.3
wolfcms/wolf_cms < 0.7.5
Published Oct 01, 2012
Tracked Since Feb 18, 2026