Логотип exploitDog
bind:CVE-2014-9300
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2014-9300

Количество 2

Количество 2

nvd логотип

CVE-2014-9300

около 11 лет назад

Cross-site request forgery (CSRF) vulnerability in the cmisbrowser servlet in Content Management Interoperability Service (CMIS) in Alfresco Community Edition before 5.0.a allows remote attackers to hijack the authentication of users for requests that access unauthorized URLs and obtain user credentials via a URL in the url parameter.

CVSS2: 6.8
EPSS: Низкий
github логотип

GHSA-3fjj-qfv3-f9fj

больше 3 лет назад

Cross-site request forgery (CSRF) vulnerability in the cmisbrowser servlet in Content Management Interoperability Service (CMIS) in Alfresco Community Edition before 5.0.a allows remote attackers to hijack the authentication of users for requests that access unauthorized URLs and obtain user credentials via a URL in the url parameter.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2014-9300

Cross-site request forgery (CSRF) vulnerability in the cmisbrowser servlet in Content Management Interoperability Service (CMIS) in Alfresco Community Edition before 5.0.a allows remote attackers to hijack the authentication of users for requests that access unauthorized URLs and obtain user credentials via a URL in the url parameter.

CVSS2: 6.8
0%
Низкий
около 11 лет назад
github логотип
GHSA-3fjj-qfv3-f9fj

Cross-site request forgery (CSRF) vulnerability in the cmisbrowser servlet in Content Management Interoperability Service (CMIS) in Alfresco Community Edition before 5.0.a allows remote attackers to hijack the authentication of users for requests that access unauthorized URLs and obtain user credentials via a URL in the url parameter.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу