BageCMS 3.1.3 has CSRF via upload/index.php?r=admini/admin/ownerUpdate to modify a user account.
CVE Status: Modified
No CVSS data available
Exploit-db Github