An issue was discovered in fledrCMS through 2014-02-03. There is a CSRF vulnerability that can change the administrator's password via index.php?p=done&savedata=1.
- https://github.com/mattiapazienti/fledrCMS/issues/2
No PoCs found on GitHub currently.