CVE-2012-4943 Information

Description

Multiple cross-site request forgery (CSRF) vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attackers to hijack the authentication of arbitrary users for requests that modify (1) passwords (2) accounts or (3) permissions.

Reference

http://www.kb.cert.org/vuls/id/427547 http://www.securityfocus.com/bid/56427 https://exchange.xforce.ibmcloud.com/vulnerabilities/79854

Share on: