Cross-site request forgery (CSRF) vulnerability in Axway SecureTransport 5.1 SP2 and earlier allows remote attackers to hijack the authentication of unspecified users for requests that upload arbitrary files via a crafted request to api/v1.0/files/.
References
Configurations
Information
Published : 2014-11-04 07:55
Updated : 2017-08-28 18:34
NVD link : CVE-2013-7057
Mitre link : CVE-2013-7057
JSON object : View
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
Products Affected
axway
- securetransport