CVE-2016-1607

Multiple cross-site request forgery (CSRF) vulnerabilities in the administrative interface in Novell Filr before 2.0 Security Update 2 allow remote attackers to hijack the authentication of administrators, as demonstrated by reconfiguring time settings via a vaconfig/time request.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:novell:filr:*:security_update_1:*:*:*:*:*:*
cpe:2.3:a:novell:filr:*:security_update_2:*:*:*:*:*:*

Information

Published : 2016-07-31 19:59

Updated : 2017-09-02 18:29


NVD link : CVE-2016-1607

Mitre link : CVE-2016-1607


JSON object : View

CWE
CWE-352

Cross-Site Request Forgery (CSRF)

Advertisement

dedicated server usa

Products Affected

novell

  • filr