Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2010-1732
Description:Cross-site request forgery (CSRF) vulnerability in the users module in Zikula Application Framework before 1.2.3 allows remote attackers to hijack the authentication of administrators for requests that change the administrator email address (updateemail action).
Test IDs: 1.3.6.1.4.1.25623.1.0.67529   1.3.6.1.4.1.25623.1.0.67528  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2010-1732
http://www.htbridge.ch/advisory/xsrf_csrf_in_zikula_application_framework.html




© 1998-2025 E-Soft Inc. All rights reserved.