Gila CMS before 1.11.6 allows CSRF with resultant XSS via the admin/themes URI, leading to compromise of the admin account.
Published at: May 21, 2020 at 06:15PM
View on website
from WordPress https://bit.ly/2XgNDmQ
via IFTTT
from Blogger https://bit.ly/2LQWczC
via IFTTT
