An issue was discovered in DOYO (aka doyocms) 2.3(20140425 update). There is a CSRF vulnerability that can add a super administrator account via admin.php?c=a_adminuser&a=add&run=1.
- https://github.com/millken/doyocms/issues/1
No PoCs found on GitHub currently.