Total vulnerabilities in the database
phpwcms 1.8.9 allows remote attackers to discover the installation path via an invalid csrf_token_value field.
CVSS v3:
CVSS v2:
CWEs: