doorGets 7.0 has a CSRF vulnerability in /doorgets/app/requests/user/configurationRequest.php. A remote attacker can exploit this vulnerability for "Google Analytics code" modification.
- https://github.com/itodaro/doorGets_cve
- https://github.com/itodaro/doorGets_cve