CVE-2014-2358
19.10.2014, 01:55
Multiple cross-site request forgery (CSRF) vulnerabilities in the administrative web interface in the proxy server on Fox-IT Fox DataDiode appliances before 1.7.2 allow remote attackers to hijack the authentication of administrators for requests that (1) create administrative users, (2) remove administrative users, or (3) change permissions.
Vendor | Product | Version |
---|---|---|
fox-it | fox_datadiode | 𝑥 ≤ 1.7.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration