CVE-2011-1954 Information
Feb 14, 2021
cve
Description
Multiple cross-site request forgery (CSRF) vulnerabilities in Post Revolution 0.8.0c-2 and earlier allow remote attackers to hijack the authentication of arbitrary users for requests to (1) ajax-weblog-guardar.php (2) verpost.php (3) comments.php or (4) perfil.php.
Reference
http://javierb.com.ar/2011/06/01/postrev-vunls/ http://osvdb.org/72641 http://postrev.com.ar/verpost.php?id_noticia=59 http://secunia.com/advisories/44710 http://securityreason.com/securityalert/8270 http://www.securityfocus.com/archive/1/518205/100/0/threaded
Share on: