Cross-site request forgery (CSRF) vulnerability in the ZCC page in Novell ZENworks Configuration Management (ZCM) before 11.2.4 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
References
Link | Resource |
---|---|
http://www.novell.com/support/kb/doc.php?id=7012027 |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2013-11-02 20:55
Updated : 2013-11-04 23:59
NVD link : CVE-2013-6346
Mitre link : CVE-2013-6346
CVE.ORG link : CVE-2013-6346
JSON object : View
Products Affected
novell
- zenworks_configuration_management
CWE
CWE-352
Cross-Site Request Forgery (CSRF)