Cross-site request forgery (CSRF) vulnerability in index.php in Acc PHP eMail 1.1 allows remote attackers to hijack the authentication of administrators for requests that change passwords.
- http://packetstormsecurity.org/0912-exploits/ape-xsrf.txt
No PoCs found on GitHub currently.