katello-headpin is vulnerable to CSRF in REST API
References
Link | Resource |
---|---|
https://access.redhat.com/security/cve/cve-2014-0026 | Third Party Advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2014-0026 | Issue Tracking Third Party Advisory |
Configurations
Information
Published : 2019-12-11 07:15
Updated : 2019-12-13 13:11
NVD link : CVE-2014-0026
Mitre link : CVE-2014-0026
JSON object : View
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
Products Affected
redhat
- subscription_asset_manager