Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-0301

Опубликовано: 14 мар. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8

Описание

Cross-site request forgery (CSRF) vulnerability in apps/calendar/ajax/settings/settimezone in ownCloud before 4.0.12 allows remote attackers to hijack the authentication of users for requests that change the timezone via the timezone parameter.

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [5.0.4debian-0ubuntu1]]
hardy

DNE

lucid

DNE

oneiric

ignored

end of life
precise

not-affected

quantal

ignored

end of life
raring

not-affected

5.0.4debian-0ubuntu1
saucy

not-affected

5.0.4debian-0ubuntu1
trusty

not-affected

5.0.4debian-0ubuntu1

Показывать по

EPSS

Процентиль: 31%
0.00118
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

nvd
почти 12 лет назад

Cross-site request forgery (CSRF) vulnerability in apps/calendar/ajax/settings/settimezone in ownCloud before 4.0.12 allows remote attackers to hijack the authentication of users for requests that change the timezone via the timezone parameter.

debian
почти 12 лет назад

Cross-site request forgery (CSRF) vulnerability in apps/calendar/ajax/ ...

github
почти 4 года назад

Cross-site request forgery (CSRF) vulnerability in apps/calendar/ajax/settings/settimezone in ownCloud before 4.0.12 allows remote attackers to hijack the authentication of users for requests that change the timezone via the timezone parameter.

EPSS

Процентиль: 31%
0.00118
Низкий

6.8 Medium

CVSS2