Open OnDemand before 1.5.7 and 1.6.x before 1.6.22 allows CSRF.
References
Link | Resource |
---|---|
https://listsprd.osu.edu/pipermail/ood-users/2020-April/000397.html | Mailing List Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2021-02-18 22:15
Updated : 2021-02-24 11:21
NVD link : CVE-2020-36247
Mitre link : CVE-2020-36247
JSON object : View
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
Products Affected
osc
- open_ondemand