Cross-site request forgery (CSRF) vulnerability in the users module in Zikula Application Framework before 1.2.3 allows remote attackers to hijack the authentication of administrators for requests that change the administrator email address (updateemail action).
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-10-03T16:21:00

Updated: 2022-10-03T16:21:00

Reserved: 2022-10-03T00:00:00


Link: CVE-2010-1732

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2010-05-06T12:47:23.783

Modified: 2010-05-11T04:00:00.000


Link: CVE-2010-1732

JSON object: View

cve-icon Redhat Information

No data.

CWE