CVE-2013-3935
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD
Description
Cross-site request forgery (CSRF) vulnerability in Opsview before 4.4.1 and Opsview Core before 20130522 allows remote attackers to hijack the authentication of administrators for requests that change the administrator password via unspecified vectors.
Affected (2)
Products: Opsview: Opsview, Opsview Core
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.4.1 | |
| Before 20130522 |
References (4)
Source: PSIRT-CNA@flexerasoftware.com
Release Notes
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Release Notes
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Timeline
No history available yet.