Lucene search

K
prionPRIOn knowledge basePRION:CVE-2013-1733
HistoryOct 24, 2013 - 10:53 a.m.

Cross site request forgery (csrf)

2013-10-2410:53:00
PRIOn knowledge base
www.prio-n.com
3

7.6 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

50.1%

Cross-site request forgery (CSRF) vulnerability in process_bug.cgi in Bugzilla 4.4.x before 4.4.1 allows remote attackers to hijack the authentication of arbitrary users for requests that modify bugs via vectors involving a midair-collision token.

CPENameOperatorVersion
bugzillaeq4.4
bugzillaeq4.4 rc1
bugzillaeq4.4 rc2

7.6 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

50.1%