PT-2007-2883 · Webapp · Webapp

Monty53

·

Publicado

2007-03-16

·

Atualizado

2008-11-23

·

CVE-2007-1489

CVSS v2.0

6.8

Média

VetorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions WebAPP versions 0.9.9.4 through 0.9.9.6
Description The issue allows remote attackers to obtain admin access by modifying cookies and performing certain consecutive actions, possibly due to a cross-site request forgery (CSRF) vulnerability.
Recommendations For versions 0.9.9.4 through 0.9.9.6, update to a version that fixes the issue, as the current version allows for potential admin access exploitation.

Correção

CSRF

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2007-1489

Produtos afetados

Webapp