4.3
CVSSv2

CVE-2008-3760

Published: 21/08/2008 Updated: 08/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability in the sign-out page in Vanilla 1.1.4 and previous versions allows remote malicious users to hijack the authentication of arbitrary users for requests that trigger a logout via a SignOutNow action to people.php.

Vulnerable Product Search on Vulmon Subscribe to Product

lussumo vanilla 1.0.1

lussumo vanilla 1.0.2

lussumo vanilla 0.9.2

lussumo vanilla 1

lussumo vanilla 1.1.3

lussumo vanilla

lussumo vanilla 1.1.1

lussumo vanilla 1.1.2

lussumo vanilla 1.0.3

lussumo vanilla 1.1