CVE-2015-2954
EUVD-2015-303813.06.2015, 14:59
Cross-site request forgery (CSRF) vulnerability in Igreks MilkyStep Light 0.94 and earlier and Professional 1.82 and earlier allows remote attackers to hijack the authentication of arbitrary users.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| igreks | milkystep_light | 𝑥 ≤ 0.94 |
| igreks | milkystep_professional | 𝑥 ≤ 1.82 |
| igreks | milkystep_professional_oem | 𝑥 ≤ 1.82 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References