CVE-2012-4059
25.07.2012, 21:55
Cross-site request forgery (CSRF) vulnerability in home/secretqtn.php in SocketMail Pro 2.2.9 allows remote attackers to hijack the authentication of arbitrary users for requests that change user security questions and answers via an upd action.
Vendor | Product | Version |
---|---|---|
socketmail | socketmail | 2.2.9 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References