← Back

CVE-2011-3381

nvd nist
Published: Sep 8, 2011Modified: Apr 29, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD

Description

Cross-site request forgery (CSRF) vulnerability in Phorum before 5.2.16 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

Affected (83)

Products: Phorum: Phorum
1 product
Phorum
Configuration A
83 vulnerable
Vulnerable SoftwareAffected Versions
Phorum
Up to 5.2.15
Version 3.0.7
Version 3.1.1
Version 3.1.1_pre
Version 3.1.1_rc2
Version 3.1.1a
Version 3.1.2
Version 3.1
Version 3.2.2
Version 3.2.3
Version 3.2.3a
Version 3.2.3b
Version 3.2.4
Version 3.2.5
Version 3.2.6
Version 3.2.7
Version 3.2.8
Version 3.2
Version 3.3.1
Version 3.3.1a
Version 3.3.2
Version 3.3.2a
Version 3.3.2b3
Version 3.4.1
Version 3.4.2
Version 3.4.3
Version 3.4.4
Version 3.4.5
Version 3.4.6
Version 3.4.7
Version 3.4.8
Version 3.4.8a
Version 3.4
Version 4.3.7
Version 5.0.0_alpha
Version 5.0.10
Version 5.0.11
Version 5.0.12
Version 5.0.13
Version 5.0.13a
Version 5.0.14
Version 5.0.14a
Version 5.0.15
Version 5.0.15a
Version 5.0.16
Version 5.0.17
Version 5.0.17a
Version 5.0.18
Version 5.0.19
Version 5.0.1_alpha
Version 5.0.20
Version 5.0.2_alpha
Version 5.0.3_beta
Version 5.0.4_beta
Version 5.0.4a_beta
Version 5.0.5_beta
Version 5.0.6_beta
Version 5.0.7_beta
Version 5.0.7a_beta
Version 5.0.8_rc
Version 5.0.9
Version 5.1.13
Version 5.1.14
Version 5.1.17
Version 5.1.18
Version 5.1.20
Version 5.1.21
Version 5.1.25
Version 5.2.10
Version 5.2.10 rc1
Version 5.2.11
Version 5.2.12
Version 5.2.12a
Version 5.2.13
Version 5.2.14
Version 5.2.1
Version 5.2.2 beta
Version 5.2.3 rc1
Version 5.2.4 rc2
Version 5.2.5
Version 5.2.8
Version 5.2.9
Version 5.2

References (6)

Source: vultures@jpcert.or.jp
Source: vultures@jpcert.or.jp
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.