CVE-2014-8246 Information

Description

Cross-site request forgery (CSRF) vulnerability in CA Release Automation (formerly iTKO LISA Release Automation) before 4.7.1 b448 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

Reference

http://seclists.org/fulldisclosure/2014/Dec/55 http://securitytracker.com/id?1031375 http://www.ca.com/us/support/ca-support-online/product-content/recommended-reading/security-notices/ca20141215-01-security-notice-for-ca-lisa-release-automation.aspx http://www.kb.cert.org/vuls/id/343060 http://www.securityfocus.com/archive/1/534246/100/0/threaded

Share on: