CVE-2008-3760
21.08.2008, 17:41
Cross-site request forgery (CSRF) vulnerability in the sign-out page in Vanilla 1.1.4 and earlier allows remote attackers to hijack the authentication of arbitrary users for requests that trigger a logout via a SignOutNow action to people.php.
Vendor | Product | Version |
---|---|---|
lussumo | vanilla | 𝑥 ≤ 1.1.4 |
lussumo | vanilla | 0.9.2 |
lussumo | vanilla | 1.0.1 |
lussumo | vanilla | 1.0.2 |
lussumo | vanilla | 1.0.3 |
lussumo | vanilla | 1.1 |
lussumo | vanilla | 1.1.1 |
lussumo | vanilla | 1.1.2 |
lussumo | vanilla | 1.1.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References