Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2016-6801
Description:Cross-site request forgery (CSRF) vulnerability in the CSRF content- type check in Jackrabbit-Webdav in Apache Jackrabbit 2.4.x before 2.4.6, 2.6.x before 2.6.6, 2.8.x before 2.8.3, 2.10.x before 2.10.4, 2.12.x before 2.12.4, and 2.13.x before 2.13.3 allows remote attackers to hijack the authentication of unspecified victims for requests that create a resource via an HTTP POST request with a (1) missing or (2) crafted Content-Type header.
Test IDs: 1.3.6.1.4.1.25623.1.0.807897   1.3.6.1.4.1.25623.1.0.807898   1.3.6.1.4.1.25623.1.1.1.2.2016.629   1.3.6.1.4.1.25623.1.0.703679  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2016-6801
BugTraq ID: 92966
http://www.securityfocus.com/bid/92966
Debian Security Information: DSA-3679 (Google Search)
http://www.debian.org/security/2016/dsa-3679
http://www.openwall.com/lists/oss-security/2016/09/14/6




© 1998-2025 E-Soft Inc. All rights reserved.