Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-0440

Опубликовано: 28 мар. 2011
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5.8

Описание

Cross-site request forgery (CSRF) vulnerability in Mahara 1.2.x before 1.2.7 and 1.3.x before 1.3.4 allows remote attackers to hijack the authentication of arbitrary users for requests that delete blogs.

РелизСтатусПримечание
dapper

DNE

devel

not-affected

1.2.7-1
hardy

DNE

karmic

ignored

end of life
lucid

released

1.2.4-1ubuntu0.2
maverick

released

1.2.5-2ubuntu0.1
natty

not-affected

1.2.7-1
upstream

released

1.2.7, 1.3.4

Показывать по

EPSS

Процентиль: 53%
0.00295
Низкий

5.8 Medium

CVSS2

Связанные уязвимости

nvd
больше 14 лет назад

Cross-site request forgery (CSRF) vulnerability in Mahara 1.2.x before 1.2.7 and 1.3.x before 1.3.4 allows remote attackers to hijack the authentication of arbitrary users for requests that delete blogs.

debian
больше 14 лет назад

Cross-site request forgery (CSRF) vulnerability in Mahara 1.2.x before ...

github
больше 3 лет назад

Cross-site request forgery (CSRF) vulnerability in Mahara 1.2.x before 1.2.7 and 1.3.x before 1.3.4 allows remote attackers to hijack the authentication of arbitrary users for requests that delete blogs.

EPSS

Процентиль: 53%
0.00295
Низкий

5.8 Medium

CVSS2