CVE-2012-1900
RazorCMS < 1.2.1 - Cross-Site Request Forgery via showcats Action
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2012-1900. PoCs published by Ivano Binetti.
AI-analyzed exploit summary This exploit demonstrates a CSRF vulnerability in RazorCMS <= 1.2.1 STABLE, allowing an attacker to delete web pages by tricking an authenticated admin into submitting a malicious form.
Description
Cross-site request forgery (CSRF) vulnerability in admin/index.php in RazorCMS 1.2.1 and earlier allows remote attackers to hijack the authentication of administrators for requests that delete arbitrary web pages via a showcats action.
Exploits (1)
This exploit demonstrates a CSRF vulnerability in RazorCMS <= 1.2.1 STABLE, allowing an attacker to delete web pages by tricking an authenticated admin into submitting a malicious form.