==================================================================================================================================== | # Title : İtalia Mediasky CMS v2.0 CSRF Vulnerability | | # Author : indoushka | | # Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 63.0.3 (32-bit) | | # Vendor : http://www.bereewineshop.com/admin/ | | # Dork : Mediasky - Lato Amministrativo | ==================================================================================================================================== poc : [+] Dorking İn Google Or Other Search Enggine. [+] The following html code create a new admin . [+] Go to the line 18+19 . [+] Set the target site link Save changes and apply . [+] infected file : /admin/reginsuseradmin.php. [+] infected file : /admin/visuseradmin.php