enabling everyone to be secure
Showing 1 - 1 of 1 RSS Feed

Files

Ubuntu Security Notice 911-1
Posted Mar 12, 2010
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 911-1 - It was discovered that several wiki actions and preference settings in MoinMoin were not protected from cross-site request forgery (CSRF). If an authenticated user were tricked into visiting a malicious website while logged into MoinMoin, a remote attacker could change the user's configuration or wiki content. It was discovered that MoinMoin did not properly sanitize its input when processing user preferences. An attacker could enter malicious content which when viewed by a user, could render in unexpected ways.

tags | advisory, remote, csrf
systems | linux, ubuntu
advisories | CVE-2010-0668, CVE-2010-0669, CVE-2010-0717
MD5 | 179c22aa8c5455e7896bd8ece2c0d474
Page 1 of 1
Back1Next

Top Authors In Last 30 Days

packet storm

© 2012 Packet Storm. All rights reserved.

close