![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2010-0785 |
Description: | Cross-site request forgery (CSRF) vulnerability in the Administrative Console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.35 and 7.0 before 7.0.0.13 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors. |
Test IDs: | None available |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2010-0785 AIX APAR: PM18909 http://www-01.ibm.com/support/docview.wss?uid=swg1PM18909 AIX APAR: PM23874 http://www-01.ibm.com/support/docview.wss?uid=swg1PM23874 BugTraq ID: 43875 http://www.securityfocus.com/bid/43875 http://secunia.com/advisories/41722 http://www.vupen.com/english/advisories/2010/2595 XForce ISS Database: was-admin-console-csrf(62949) https://exchange.xforce.ibmcloud.com/vulnerabilities/62949 |