CVE-2012-4051 Information
Feb 14, 2021
cve
Description
Multiple cross-site request forgery (CSRF) vulnerabilities in editAccount.html in the JAMF Software Server (JSS) interface in JAMF Casper Suite before 8.61 allow remote attackers to hijack the authentication of administrators for requests that (1) create user accounts or (2) change passwords via a Save action.
Reference
http://infosec42.blogspot.com/2012/09/jamf-casper-suite-mdm-csrf-vulnerability.html http://jamfsoftware.com/libraries/pdf/products/documentation/Casper_Suite_8.61_Release_Notes.pdf http://www.kb.cert.org/vuls/id/555668
Share on: