CVE-2012-4053 Information

Description

Cross-site request forgery (CSRF) vulnerability in eZOE flash player in eZ Publish 4.1 through 4.6 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

Reference

http://osvdb.org/83676 http://secunia.com/advisories/49812 http://share.ez.no/community-project/security-advisories/ezsa-2012-009-ezoe-flash-player-csrf-security-issues https://exchange.xforce.ibmcloud.com/vulnerabilities/76811

Share on: