Cross-site request forgery (CSRF) vulnerability in Xavoc Technocrats xEpan CMS 1.0.4.1, 1.0.4, 1.0.1, and earlier allows remote attackers to hijack the authentication of administrators for requests that create new administrative accounts via a crafted request to the owner/users page.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2014-11-28T15:00:00

Updated: 2018-10-09T18:57:01

Reserved: 2014-10-22T00:00:00


Link: CVE-2014-8429

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2014-11-28T15:59:06.323

Modified: 2018-10-09T19:54:16.823


Link: CVE-2014-8429

JSON object: View

cve-icon Redhat Information

No data.

CWE