# Exploit Title :----------------- : ApPHP MicroCMS 3.9.5 - Cross-Site Request Forgery (Add Admin (Main)) # Author :------------------------ : Besim # Google Dork :---------------- : - # Date :-------------------------- : 12/10/2016 # Type :-------------------------- : webapps # Platform : -------------------- : PHP # Vendor Homepage :------- : http://www.apphp.com # Software link : -------------- : https://www.apphp.com/customer/index.php?page=free-products *-* Vulnerable link : http://site_name/path/index.php?admin=admins_management ############ CSRF PoC #############
############ ########## ############ *-* Thanks Meryem AKDOAAN *-*