Описание
Cross-site request forgery (CSRF) vulnerability in Apache CouchDB 0.8.0 through 0.11.0 allows remote attackers to hijack the authentication of administrators for direct requests to an installation URL.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | DNE | |
| devel | not-affected | 1.0.1-0ubuntu1 |
| hardy | DNE | |
| jaunty | ignored | end of life |
| karmic | ignored | end of life |
| lucid | ignored | |
| maverick | not-affected | 1.0.1-0ubuntu1 |
| natty | not-affected | 1.0.1-0ubuntu1 |
| oneiric | not-affected | 1.0.1-0ubuntu1 |
| precise | not-affected | 1.0.1-0ubuntu1 |
Показывать по
Ссылки на источники
6.8 Medium
CVSS2
Связанные уязвимости
Cross-site request forgery (CSRF) vulnerability in Apache CouchDB 0.8.0 through 0.11.0 allows remote attackers to hijack the authentication of administrators for direct requests to an installation URL.
Cross-site request forgery (CSRF) vulnerability in Apache CouchDB 0.8. ...
Cross-site request forgery (CSRF) vulnerability in Apache CouchDB 0.8.0 through 0.11.0 allows remote attackers to hijack the authentication of administrators for direct requests to an installation URL.
6.8 Medium
CVSS2