CVE-2019-7737: Verydows

High severity, CVSS 8.8. EPSS: 0.7% chance of exploitation in the next 30 days.

A CSRF vulnerability was found in Verydows v2.0 that can add an admin account via index.php?m=backend&c=admin&a=add&step=submit.

Affected products

Published 2019-02-11. Last modified 2026-06-17.