CVE-2010-2268

Cross-site request forgery (CSRF) vulnerability in authcfg.cgi in Accoria Web Server (aka Rock Web Server) 1.4.7 allows remote attackers to hijack the authentication of administrators for requests that create user accounts.
Configurations

Configuration 1 (hide)

cpe:2.3:a:accoria:rock_web_server:1.4.7:*:*:*:*:*:*:*

History

21 Nov 2024, 01:16

Type Values Removed Values Added
References () http://www.ioactive.com/pdfs/AccoriaWebServer.pdf - Exploit () http://www.ioactive.com/pdfs/AccoriaWebServer.pdf - Exploit
References () http://www.kb.cert.org/vuls/id/245081 - US Government Resource () http://www.kb.cert.org/vuls/id/245081 - US Government Resource

Information

Published : 2010-06-15 14:30

Updated : 2024-11-21 01:16


NVD link : CVE-2010-2268

Mitre link : CVE-2010-2268

CVE.ORG link : CVE-2010-2268


JSON object : View

Products Affected

accoria

  • rock_web_server
CWE
CWE-352

Cross-Site Request Forgery (CSRF)