CVE-2018-8811

HIGH

OpenCMS 10.5.3 - Cross-Site Request Forgery in User Role Management

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2018-8811. PoCs published by Sureshbabu Narvaneni.

AI-analyzed exploit summary This exploit demonstrates a CSRF vulnerability in OpenCMS 10.5.3, allowing an attacker to escalate privileges by tricking an authenticated administrator into submitting a crafted form. The PoC includes a malicious HTML form that assigns the 'RoleRootAdmins' role to a low-privileged user.

Description

Cross-site request forgery (CSRF) vulnerability in system/workplace/admin/accounts/user_role.jsp in OpenCMS 10.5.3 allows remote attackers to hijack the authentication of administrative users for requests that perform privilege escalation. Note: It is argued that OpenCMS allows only registered users to upload different kind of content artifacts (SVG, .doc, .docx). The uploaded content is stored in the CMS content repository "as is". In case of scripts inside an SVG, this may or may not be "malicious", there is no way of knowing if the uploaded SVG contains the script for a reason. To exploit the "issue", a user must have an account in the CMS as a content manager

Exploits (1)

exploitdb WORKING POC
by Sureshbabu Narvaneni · htmlwebappsphp
https://www.exploit-db.com/exploits/44391

This exploit demonstrates a CSRF vulnerability in OpenCMS 10.5.3, allowing an attacker to escalate privileges by tricking an authenticated administrator into submitting a crafted form. The PoC includes a malicious HTML form that assigns the 'RoleRootAdmins' role to a low-privileged user.

Classification
Working Poc 100%
Attack Type
Auth Bypass
Complexity
Trivial
Reliability
Reliable
Target: OpenCMS 10.5.3
Auth required
Prerequisites: Victim must be logged in as a Root Administrator · Attacker must know the user ID of a low-privileged user
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Exploit, Third Party Advisory x_refsource_misc
https://github.com/alkacon/opencms-core/issues/586
Exploit, Third Party Advisory, VDB Entry exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/44391/

Scores

CVSS v3 8.8
EPSS 0.0016
EPSS Percentile 36.5%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-352
Status published
Products (1)
alkacon/opencms 10.5.3
Published Mar 20, 2018
Tracked Since Feb 18, 2026