CVE-2011-3636
08.12.2011, 11:55
Cross-site request forgery (CSRF) vulnerability in the management interface in FreeIPA before 2.1.4 allows remote attackers to hijack the authentication of administrators for requests that make configuration changes.
Vendor | Product | Version |
---|---|---|
redhat | freeipa | 𝑥 ≤ 2.1.3 |
redhat | freeipa | 0.99 |
redhat | freeipa | 0.99698-20080228 |
redhat | freeipa | 0.99698641-20080218 |
redhat | freeipa | 1.0.0 |
redhat | freeipa | 1.0.0:a |
redhat | freeipa | 1.0.0:b |
redhat | freeipa | 1.1.0 |
redhat | freeipa | 1.1.1 |
redhat | freeipa | 1.2.0 |
redhat | freeipa | 1.2.1 |
redhat | freeipa | 1.2.2 |
redhat | freeipa | 1.9.0:pre1 |
redhat | freeipa | 1.9.0:pre2 |
redhat | freeipa | 1.9.0:pre3 |
redhat | freeipa | 1.9.0:pre4 |
redhat | freeipa | 1.9.0:pre5 |
redhat | freeipa | 2.0.0 |
redhat | freeipa | 2.0.0:pre1 |
redhat | freeipa | 2.0.0:pre2 |
redhat | freeipa | 2.0.0:rc1 |
redhat | freeipa | 2.0.0:rc2 |
redhat | freeipa | 2.0.0:rc3 |
redhat | freeipa | 2.0.1 |
redhat | freeipa | 2.1.0 |
redhat | freeipa | 2.1.1 |
redhat | freeipa | 2.1.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration