CVE-2016-1607
01.08.2016, 02:59
Multiple cross-site request forgery (CSRF) vulnerabilities in the administrative interface in Novell Filr before 2.0 Security Update 2 allow remote attackers to hijack the authentication of administrators, as demonstrated by reconfiguring time settings via a vaconfig/time request.
Vendor | Product | Version |
---|---|---|
novell | filr | 𝑥 ≤ 1.2 |
novell | filr | 𝑥 ≤ 2.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References