Nom de la faiblesse | Source | |
---|---|---|
Cross-Site Request Forgery (CSRF) The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor. |
Métriques | Score | Gravité | CVSS Vecteur | Source |
---|---|---|---|---|
V2 | 6.8 | AV:N/AC:M/Au:N/C:P/I:P/A:P | nvd@nist.gov |
Apple>>Safari >> Version To (excluding) 4.0.4
Google>>Chrome >> Version To (excluding) 3.0.195.33
Apple>>Iphone_os >> Version To (excluding) 4.0
Opensuse>>Opensuse >> Version 11.2
Opensuse>>Opensuse >> Version 11.3
Fedoraproject>>Fedora >> Version 11
Fedoraproject>>Fedora >> Version 12