Логотип exploitDog
bind:CVE-2009-1434
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2009-1434

Количество 3

Количество 3

nvd логотип

CVE-2009-1434

почти 17 лет назад

Cross-site request forgery (CSRF) vulnerability in Foswiki before 1.0.5 allows remote attackers to hijack the authentication of arbitrary users for requests that modify pages, change permissions, or change group memberships, as demonstrated by a URL for a (1) save or (2) view script in the SRC attribute of an IMG element, a related issue to CVE-2009-1339.

CVSS2: 6.8
EPSS: Низкий
debian логотип

CVE-2009-1434

почти 17 лет назад

Cross-site request forgery (CSRF) vulnerability in Foswiki before 1.0. ...

CVSS2: 6.8
EPSS: Низкий
github логотип

GHSA-x874-rj3x-j4h8

почти 4 года назад

Cross-site request forgery (CSRF) vulnerability in Foswiki before 1.0.5 allows remote attackers to hijack the authentication of arbitrary users for requests that modify pages, change permissions, or change group memberships, as demonstrated by a URL for a (1) save or (2) view script in the SRC attribute of an IMG element, a related issue to CVE-2009-1339.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2009-1434

Cross-site request forgery (CSRF) vulnerability in Foswiki before 1.0.5 allows remote attackers to hijack the authentication of arbitrary users for requests that modify pages, change permissions, or change group memberships, as demonstrated by a URL for a (1) save or (2) view script in the SRC attribute of an IMG element, a related issue to CVE-2009-1339.

CVSS2: 6.8
0%
Низкий
почти 17 лет назад
debian логотип
CVE-2009-1434

Cross-site request forgery (CSRF) vulnerability in Foswiki before 1.0. ...

CVSS2: 6.8
0%
Низкий
почти 17 лет назад
github логотип
GHSA-x874-rj3x-j4h8

Cross-site request forgery (CSRF) vulnerability in Foswiki before 1.0.5 allows remote attackers to hijack the authentication of arbitrary users for requests that modify pages, change permissions, or change group memberships, as demonstrated by a URL for a (1) save or (2) view script in the SRC attribute of an IMG element, a related issue to CVE-2009-1339.

0%
Низкий
почти 4 года назад

Уязвимостей на страницу