CVE-2018-11445: Easyservice Billing Project Easyservice Billing

High severity, CVSS 8.8. EPSS: 2.3% chance of exploitation in the next 30 days.

A CSRF issue was discovered on the User Add/System Settings Page (system-settings-user-new2.php) in EasyService Billing 1.0. A User can be added with the Admin role.

Affected products

Published 2018-05-25. Last modified 2026-06-17.