← Back

CVE-2008-3262

nvd nist
Published: Jul 22, 2008Modified: Apr 23, 2026

JSON object

Loading...
5.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:N
Exploitability: 8.6 / Impact: 4.9
Source: NVD

Description

Cross-site request forgery (CSRF) vulnerability in Claroline before 1.8.10 allows remote attackers to change passwords, related to lack of a requirement for the previous password.

Affected (27)

Products: Claroline: Claroline
1 product
Claroline
Configuration A
27 vulnerable
Vulnerable SoftwareAffected Versions
Claroline
Up to 1.8.9
Version 1.2
Version 1.3
Version 1.4
Version 1.5.3
Version 1.5.4
Version 1.5
Version 1.6
Version 1.6_beta
Version 1.6_rc1
Version 1.7.1
Version 1.7.2
Version 1.7.3
Version 1.7.4
Version 1.7.5
Version 1.7.6
Version 1.7.7
Version 1.7
Version 1.8.0
Version 1.8.1
Version 1.8.2
Version 1.8.3
Version 1.8.4
Version 1.8.5
Version 1.8.6
Version 1.8.7
Version 1.8.8

Timeline

No history available yet.