Описание
Cobbler Web Interface Lacks CSRF Protection
cobbler: Web interface lacks CSRF protection when using Django framework
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2011-4952
- https://github.com/cobbler/cobbler/commit/18eb1c06779b37d89dfb2962a08236dd1bab24a6
- https://github.com/cobbler/cobbler/commit/4bee30b4086a8d845bea5d39d6f2cba1f4a396aa
- https://access.redhat.com/security/cve/cve-2011-4952
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-4952
- https://security-tracker.debian.org/tracker/CVE-2011-4952
- http://www.openwall.com/lists/oss-security/2012/04/12/10
Пакеты
Наименование
cobbler
pip
Затронутые версииВерсия исправления
< 2.6.0
2.6.0
Связанные уязвимости
CVSS3: 8.8
ubuntu
около 6 лет назад
cobbler: Web interface lacks CSRF protection when using Django framework
redhat
больше 14 лет назад
cobbler: Web interface lacks CSRF protection when using Django framework
CVSS3: 8.8
nvd
около 6 лет назад
cobbler: Web interface lacks CSRF protection when using Django framework
CVSS3: 8.8
debian
около 6 лет назад
cobbler: Web interface lacks CSRF protection when using Django framewo ...