6.8
CVSSv2

CVE-2010-3891

Published: 12/11/2010 Updated: 10/10/2018
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability in ESAdmin/security.do in the administrator interface in IBM OmniFind Enterprise Edition prior to 9.1 allows remote malicious users to hijack the authentication of administrators for requests that add an administrative user via a saveNewUser action.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm omnifind 8.4

ibm omnifind 8.5

ibm omnifind 8.0

ibm omnifind

Exploits

The forms in the administrator interface are not protected against XSRF The attacker can do any action in the context of the victim An example attack scenario could be: The attacker creates a malicious website with a prepared form to add a new user, which will be submitted on load Exploit to add an admin user: <html> <head>&l ...
IBM OmniFind suffers from cross site scripting, cross site request forgery, buffer overflow, session fixation and privilege escalation vulnerabilities Various other issues also exist ...