CVE-2010-5315
03.01.2015, 11:59
Multiple cross-site request forgery (CSRF) vulnerabilities in BEdita before 3.1 allow remote attackers to hijack the authentication of administrators for requests that (1) create categories via a data array to news/saveCategories or (2) modify credentials via a data array to admin/saveUser.
Vendor | Product | Version |
---|---|---|
chialab_\&_channelweb | bedita | 𝑥 ≤ 3.0.1.2550_\"betula\" |
𝑥
= Vulnerable software versions
Common Weakness Enumeration