CVE-2014-6409
06.10.2014, 23:55
Cross-site request forgery (CSRF) vulnerability in M/Monit 3.3.2 and earlier allows remote attackers to hijack the authentication of administrators for requests that change user passwords via the fullname and password parameters to /admin/users/update.
Vendor | Product | Version |
---|---|---|
mmonit | m\/monit | 𝑥 ≤ 3.3.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References