Multiple cross-site request forgery (CSRF) vulnerabilities on the Blue Coat ProxyAV appliance before 3.2.6.1 allow remote attackers to hijack the authentication of administrators for requests that (1) change a password, (2) modify a policy, or (3) restart the device.
References
Link | Resource |
---|---|
https://kb.bluecoat.com/index?page=content&id=SA46 |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2012-08-26 12:55
Updated : 2013-10-11 07:48
NVD link : CVE-2010-5191
Mitre link : CVE-2010-5191
JSON object : View
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
Products Affected
bluecoat
- proxyav
- avos