WTCMS 1.0 contains a cross-site request forgery (CSRF) vulnerability in the index.php?g=admin&m=nav&a=add_post component that allows attackers to arbitrarily add articles in the administrator background.
| Software | From | Fixed in |
|---|---|---|
| wtcms_project / wtcms | 1.0 | 1.0.x |