Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-1088

Опубликовано: 24 апр. 2013
Источник: ubuntu
Приоритет: medium
CVSS2: 6.8

Описание

Cross-site request forgery (CSRF) vulnerability in Novell iManager 2.7 before SP6 Patch 1 allows remote attackers to hijack the authentication of arbitrary users by leveraging improper request validation by iManager code deployed within an Apache Tomcat container.

РелизСтатусПримечание
devel

not-affected

hardy

DNE

lucid

not-affected

oneiric

not-affected

precise

not-affected

quantal

not-affected

raring

not-affected

upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

not-affected

hardy

DNE

lucid

DNE

oneiric

not-affected

precise

not-affected

quantal

not-affected

raring

not-affected

upstream

not-affected

Показывать по

6.8 Medium

CVSS2

Связанные уязвимости

nvd
почти 13 лет назад

Cross-site request forgery (CSRF) vulnerability in Novell iManager 2.7 before SP6 Patch 1 allows remote attackers to hijack the authentication of arbitrary users by leveraging improper request validation by iManager code deployed within an Apache Tomcat container.

github
больше 3 лет назад

Cross-site request forgery (CSRF) vulnerability in Novell iManager 2.7 before SP6 Patch 1 allows remote attackers to hijack the authentication of arbitrary users by leveraging improper request validation by iManager code deployed within an Apache Tomcat container.

6.8 Medium

CVSS2