PT-2007-2883 · Webapp · Webapp

Monty53

·

Published

2007-03-16

·

Updated

2008-11-23

·

CVE-2007-1489

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions WebAPP versions 0.9.9.4 through 0.9.9.6
Description The issue allows remote attackers to obtain admin access by modifying cookies and performing certain consecutive actions, possibly due to a cross-site request forgery (CSRF) vulnerability.
Recommendations For versions 0.9.9.4 through 0.9.9.6, update to a version that fixes the issue, as the current version allows for potential admin access exploitation.

Fix

CSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2007-1489

Affected Products

Webapp