==================================================================================================================================== | # Title : Lamano CMS v2.0 CSRF Vulnerability | | # Author : indoushka | | # Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 69.0(32-bit) | | # Vendor : http://www.lamano.lu/ | | # Dork : © 2018 Lamano by easysolutions | ==================================================================================================================================== poc : [+] Dorking İn Google Or Other Search Enggine. [+] The following html code create a new admin . [+] Go to the line 8. [+] Set the target site link Save changes and apply . [+] infected file : admin.php [+] http://127.0.0.1/q73/admin.php . [+] save code as poc.html .