PT-2011-3072 · Aimluck · Aimluck Aipo+1
Masako Ohno
·
Published
2011-08-19
·
Updated
2011-08-29
·
CVE-2011-1341
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Aimluck Aipo versions prior to 4.0.4.0
Aipo for ASP versions prior to 4.0.4.0
Description
The issue is related to a cross-site request forgery (CSRF) vulnerability, which allows remote attackers to hijack the authentication of administrators for requests that modify data. This can lead to unauthorized changes to data.
Recommendations
For Aimluck Aipo versions prior to 4.0.4.0, update to version 4.0.4.0 or later.
For Aipo for ASP versions prior to 4.0.4.0, update to version 4.0.4.0 or later.
Fix
CSRF
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Aimluck Aipo
Aipo For Asp