CVE-2019-10888: Ukcms

High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.

A CSRF Issue that can add an admin user was discovered in UKcms v1.1.10 via admin.php/admin/role/add.html.

Affected products

  • Ukcms Ukcms: version 1.1.10 only

Published 2019-04-05. Last modified 2026-06-17.