
CVE-2020-37106 Business Live Chat Software 1.0 contains a cross-site request forgery vulnerability that allows attackers to change user account roles without authentication. Attacke… https://www.cve.org/CVERecord?id=CVE-2020-37106
Post summary
The CVE-2020-37106 is a CSRF flaw in Business Live Chat Software 1.0 enabling unauthenticated role changes, with no evidence of PoC, exploit, active use, patch, or false‑positive claim.
