IBM TRIRIGA Application Platform CVE-2014-4839 Cross Site Request Forgery Vulnerability
BID:70776
Info
IBM TRIRIGA Application Platform CVE-2014-4839 Cross Site Request Forgery Vulnerability
| Bugtraq ID: | 70776 |
| Class: | Design Error |
| CVE: |
CVE-2014-4839 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 08 2014 12:00AM |
| Updated: | Oct 08 2014 12:00AM |
| Credit: | IBM |
| Vulnerable: |
IBM TRIRIGA Application Platform 3.4 IBM TRIRIGA Application Platform 3.3.2 IBM TRIRIGA Application Platform 3.3.1 IBM TRIRIGA Application Platform 3.2.1 IBM TRIRIGA Application Platform 3.2 IBM TRIRIGA Application Platform 3.3.2.1 IBM TRIRIGA Application Platform 3.3.1.2 IBM TRIRIGA Application Platform 3.3.1.1 IBM TRIRIGA Application Platform 3.3.1.0 IBM TRIRIGA Application Platform 3.3.0.1 IBM TRIRIGA Application Platform 3.3 |
| Not Vulnerable: |
IBM TRIRIGA Application Platform 3.4.0.1 IBM TRIRIGA Application Platform 3.3.2.2 IBM TRIRIGA Application Platform 3.3.1.3 IBM TRIRIGA Application Platform 3.3.0.2 |
Discussion
IBM TRIRIGA Application Platform CVE-2014-4839 Cross Site Request Forgery Vulnerability
IBM TRIRIGA Application Platform is prone to an unspecified cross-site request-forgery vulnerability because it fails to properly validate HTTP requests.
Exploiting this issue may allow a remote attacker to perform certain unauthorized actions and gain access to the affected application. Other attacks are also possible.
IBM TRIRIGA Application Platform is prone to an unspecified cross-site request-forgery vulnerability because it fails to properly validate HTTP requests.
Exploiting this issue may allow a remote attacker to perform certain unauthorized actions and gain access to the affected application. Other attacks are also possible.