CVE-2025-3257 | xujiangfei admintwo 1.0 /user/updateSet cross-site request forgery
A vulnerability, which was classified as problematic, was found in xujiangfei admintwo 1.0. Affected by this issue is some unknown functionality of the file /user/updateSet. Such manipulation leads to cross-site request forgery.
This vulnerability is documented as CVE-2025-3257. The attack can be executed remotely. Additionally, an exploit exists.