NodCMS suffers from a code execution vulnerability by leveraging a cross site request forgery vulnerability.