Lucene search

K
ubuntucveUbuntu.comUB:CVE-2010-5285
HistoryNov 26, 2012 - 12:00 a.m.

CVE-2010-5285

2012-11-2600:00:00
ubuntu.com
ubuntu.com
7

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.005

Percentile

77.3%

Cross-site request forgery (CSRF) vulnerability in admin.php in Collabtive
0.6.5 allows remote attackers to hijack the authentication of
administrators for requests that add administrative users via the edituser
action.

OSVersionArchitecturePackageVersionFilename
ubuntu11.10noarchcollabtive< 0.7-1.1UNKNOWN
ubuntu12.04noarchcollabtive< 0.7-1.1UNKNOWN
ubuntu12.10noarchcollabtive< 0.7.6-1UNKNOWN

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.005

Percentile

77.3%

Related for UB:CVE-2010-5285