CVE-2014-0594
08.06.2018, 17:29
In the Open Build Service (OBS) before version 2.4.6 the CSRF protection is incorrectly disabled in the web interface, allowing for requests without the user's consent.
| Vendor | Product | Version |
|---|---|---|
| opensuse | open_build_service | 𝑥 < 2.4.6 |
𝑥
= Vulnerable software versions
Debian Releases
Common Weakness Enumeration