CVE-2015-1786
08.06.2017, 21:29
Cross-site request forgery (CSRF) vulnerability in Zend/Validator/Csrf in Zend Framework 2.3.x before 2.3.6 via null or malformed token identifiers.
Vendor | Product | Version |
---|---|---|
zend | zend_framework | 2.3.0 |
zend | zend_framework | 2.3.1 |
zend | zend_framework | 2.3.2 |
zend | zend_framework | 2.3.3 |
zend | zend_framework | 2.3.4 |
zend | zend_framework | 2.3.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration