Логотип exploitDog
bind:CVE-2016-6801
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-6801

Количество 4

Количество 4

ubuntu логотип

CVE-2016-6801

больше 9 лет назад

Cross-site request forgery (CSRF) vulnerability in the CSRF content-type check in Jackrabbit-Webdav in Apache Jackrabbit 2.4.x before 2.4.6, 2.6.x before 2.6.6, 2.8.x before 2.8.3, 2.10.x before 2.10.4, 2.12.x before 2.12.4, and 2.13.x before 2.13.3 allows remote attackers to hijack the authentication of unspecified victims for requests that create a resource via an HTTP POST request with a (1) missing or (2) crafted Content-Type header.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2016-6801

больше 9 лет назад

Cross-site request forgery (CSRF) vulnerability in the CSRF content-type check in Jackrabbit-Webdav in Apache Jackrabbit 2.4.x before 2.4.6, 2.6.x before 2.6.6, 2.8.x before 2.8.3, 2.10.x before 2.10.4, 2.12.x before 2.12.4, and 2.13.x before 2.13.3 allows remote attackers to hijack the authentication of unspecified victims for requests that create a resource via an HTTP POST request with a (1) missing or (2) crafted Content-Type header.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2016-6801

больше 9 лет назад

Cross-site request forgery (CSRF) vulnerability in the CSRF content-ty ...

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-9fc7-rhq3-wm7x

больше 3 лет назад

Apache Jackrabbit Authentication Hijacking Vulnerability

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2016-6801

Cross-site request forgery (CSRF) vulnerability in the CSRF content-type check in Jackrabbit-Webdav in Apache Jackrabbit 2.4.x before 2.4.6, 2.6.x before 2.6.6, 2.8.x before 2.8.3, 2.10.x before 2.10.4, 2.12.x before 2.12.4, and 2.13.x before 2.13.3 allows remote attackers to hijack the authentication of unspecified victims for requests that create a resource via an HTTP POST request with a (1) missing or (2) crafted Content-Type header.

CVSS3: 8.8
0%
Низкий
больше 9 лет назад
nvd логотип
CVE-2016-6801

Cross-site request forgery (CSRF) vulnerability in the CSRF content-type check in Jackrabbit-Webdav in Apache Jackrabbit 2.4.x before 2.4.6, 2.6.x before 2.6.6, 2.8.x before 2.8.3, 2.10.x before 2.10.4, 2.12.x before 2.12.4, and 2.13.x before 2.13.3 allows remote attackers to hijack the authentication of unspecified victims for requests that create a resource via an HTTP POST request with a (1) missing or (2) crafted Content-Type header.

CVSS3: 8.8
0%
Низкий
больше 9 лет назад
debian логотип
CVE-2016-6801

Cross-site request forgery (CSRF) vulnerability in the CSRF content-ty ...

CVSS3: 8.8
0%
Низкий
больше 9 лет назад
github логотип
GHSA-9fc7-rhq3-wm7x

Apache Jackrabbit Authentication Hijacking Vulnerability

CVSS3: 8.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу