CVE-2014-0168

EUVD-2022-3797
Cross-site request forgery (CSRF) vulnerability in Jolokia before 1.2.1 allows remote attackers to hijack the authentication of users for requests that execute MBeans methods via a crafted web page.
CSRF
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 31%
Affected Products (NVD)
VendorProductVersion
jolokiajolokia
𝑥
≤ 1.2.0
jolokiajolokia
1.0.0
jolokiajolokia
1.0.1
jolokiajolokia
1.0.2
jolokiajolokia
1.0.3
jolokiajolokia
1.0.4
jolokiajolokia
1.0.5
jolokiajolokia
1.0.6
jolokiajolokia
1.1.0
jolokiajolokia
1.1.1
jolokiajolokia
1.1.2
jolokiajolokia
1.1.3
jolokiajolokia
1.1.4
jolokiajolokia
1.1.5
𝑥
= Vulnerable software versions