6.8
CVSSv2

CVE-2009-1757

Published: 22/05/2009 Updated: 22/05/2009
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability in Transmission 1.5 prior to 1.53 and 1.6 prior to 1.61 allows remote malicious users to hijack the authentication of unspecified victims via unknown vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

transmissionbt transmission 1.51

transmissionbt transmission 1.60

transmissionbt transmission 1.50

transmissionbt transmission 1.52

Vendor Advisories

It was discovered that the Transmission web interface was vulnerable to cross-site request forgery (CSRF) attacks If a user were tricked into opening a specially crafted web page in a browser while Transmission was running, an attacker could trigger commands in Transmission This issue affected Ubuntu 904 (CVE-2009-1757) ...