CVE-2010-3449
Cross-site request forgery (CSRF) vulnerability in Redback before 1.2.4, as used in Apache Archiva 1.0 through 1.0.3, 1.
Cross-site request forgery (CSRF) vulnerability in Redback before 1.2.4, as used in Apache Archiva 1.0 through 1.0.3, 1.1 through 1.1.4, 1.2 through 1.2.2, and 1.3 through 1.3.1.
and Apache Continuum 1.3.6, 1.4.0, and 1.1 through 1.2.3.1.
allows remote attackers to hijack the authentication of administrators for requests that modify credentials.
MEDIUM · CVSS 6.8
EPSS 0.03242
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0