CVE-2013-1088
24.04.2013, 10:28
Cross-site request forgery (CSRF) vulnerability in Novell iManager 2.7 before SP6 Patch 1 allows remote attackers to hijack the authentication of arbitrary users by leveraging improper request validation by iManager code deployed within an Apache Tomcat container.
Vendor | Product | Version |
---|---|---|
novell | imanager | 𝑥 ≤ 2.7 |
novell | imanager | 2.7 |
novell | imanager | 2.7:refresh6 |
novell | imanager | 2.7:sp4 |
novell | imanager | 2.7:sp4_patch1 |
novell | imanager | 2.7:sp4_patch2 |
novell | imanager | 2.7:sp4_patch3 |
novell | imanager | 2.7:sp4_patch4 |
novell | imanager | 2.7:sp5 |
novell | imanager | 2.7.1 |
novell | imanager | 2.7.2 |
novell | imanager | 2.7.3 |
novell | imanager | 2.7.3:ftf2 |
novell | imanager | 2.7.3:ftf4 |
novell | imanager | 2.7.3:sp3 |
novell | imanager | 2.7.4 |
novell | imanager | 2.7.5 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration