An issue was discovered in UNL-CMS 7.59. A CSRF attack can update the website settings via ?q=admin%2Fconfig%2Fsystem%2Fsite-information&render=overlay&render=overlay.
- https://github.com/unlcms/UNL-CMS/issues/941
No PoCs found on GitHub currently.