← Back

CVE-2012-1900

nvd nist
Published: Oct 22, 2012Modified: Apr 29, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD

Description

Cross-site request forgery (CSRF) vulnerability in admin/index.php in RazorCMS 1.2.1 and earlier allows remote attackers to hijack the authentication of administrators for requests that delete arbitrary web pages via a showcats action.

Affected (17)

Products: Razorcms: Razorcms
1 product
Razorcms
Configuration A
17 vulnerable
Vulnerable SoftwareAffected Versions
Razorcms
Up to 1.2.1
Version 0.2
Version 0.2 rc2
Version 0.2 rc
Version 0.3
Version 0.3 beta1
Version 0.3 beta2
Version 0.3 beta
Version 0.3 rc2
Version 0.3 rc
Version 0.4
Version 1.0
Version 1.0 beta2
Version 1.0 beta
Version 1.0 rc
Version 1.1
Version 1.2

Timeline

No history available yet.