CVE-2016-4891: Setucocms Project Setucocms
High severity, CVSS 8.8. EPSS: 1% chance of exploitation in the next 30 days.
Cross-site request forgery (CSRF) vulnerability in SetsucoCMS all versions allows remote attackers to hijack the authentication of an administrator to change settings via unspecified vectors.
Affected products
- Setucocms Project Setucocms: affected versions not specified
Published 2017-04-12. Last modified 2026-06-17.