4.3
CVSSv2

CVE-2008-0165

Published: 21/04/2008 Updated: 08/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability in Ikiwiki prior to 2.42 allows remote malicious users to modify user preferences, including passwords, via the (1) preferences and (2) edit forms.

Vulnerable Product Search on Vulmon Subscribe to Product

ikiwiki ikiwiki

Vendor Advisories

It has been discovered that ikiwiki, a Wiki implementation, does not guard password and content changes against cross-site request forgery (CSRF) attacks For the stable distribution (etch), this problem has been fixed in version 1335 For the unstable distribution (sid), this problem has been fixed in version 242 We recommend that you upgrade ...