OpenKM Cross Site Request Forgery Vulnerability
BID:53602
Info
OpenKM Cross Site Request Forgery Vulnerability
| Bugtraq ID: | 53602 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 03 2012 12:00AM |
| Updated: | Jan 03 2012 12:00AM |
| Credit: | Cyrill Brunschwiler |
| Vulnerable: |
OpenKM OpenKM 5.1.7 |
| Not Vulnerable: |
OpenKM OpenKM 5.1.8 |
Discussion
OpenKM Cross Site Request Forgery Vulnerability
OpenKM is prone to a cross-site request-forgery vulnerability.
Attackers can exploit this issue to perform certain administrative actions and gain unauthorized access to the affected application.
OpenKM 5.1.7 is vulnerable; other versions may also be affected.
OpenKM is prone to a cross-site request-forgery vulnerability.
Attackers can exploit this issue to perform certain administrative actions and gain unauthorized access to the affected application.
OpenKM 5.1.7 is vulnerable; other versions may also be affected.