Various Vembu products allow an attacker to execute a (non-blind) http-only Cross Site Request Forgery (Other products or versions of products in this family may be affected too.)
CPE | Name | Operator | Version |
---|---|---|---|
bdr_suite | lt | 4.2.0 | |
offsite_dr | eq | 4.2.0.1 | |
offsite_dr | eq | 4.2.0 |