An issus was discovered in xiaohuanxiong CMS 5.0.17. There is a CSRF vulnerability that can modify administrator account's password.
- https://github.com/hiliqi/xiaohuanxiong/issues/28
No PoCs found on GitHub currently.