Описание
Cross-site request forgery (CSRF) vulnerability in Apache CouchDB 0.8.0 through 0.11.0 allows remote attackers to hijack the authentication of administrators for direct requests to an installation URL.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | DNE | |
| devel | not-affected | 1.0.1-0ubuntu1 |
| hardy | DNE | |
| jaunty | ignored | end of life |
| karmic | ignored | end of life |
| lucid | ignored | |
| maverick | not-affected | 1.0.1-0ubuntu1 |
| natty | not-affected | 1.0.1-0ubuntu1 |
| oneiric | not-affected | 1.0.1-0ubuntu1 |
| precise | not-affected | 1.0.1-0ubuntu1 |
Показывать по
Ссылки на источники
EPSS
6.8 Medium
CVSS2
Связанные уязвимости
Cross-site request forgery (CSRF) vulnerability in Apache CouchDB 0.8.0 through 0.11.0 allows remote attackers to hijack the authentication of administrators for direct requests to an installation URL.
Cross-site request forgery (CSRF) vulnerability in Apache CouchDB 0.8. ...
Cross-site request forgery (CSRF) vulnerability in Apache CouchDB 0.8.0 through 0.11.0 allows remote attackers to hijack the authentication of administrators for direct requests to an installation URL.
EPSS
6.8 Medium
CVSS2