6.8
CVSSv2

CVE-2011-1026

Published: 02/06/2011 Updated: 09/10/2018
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple cross-site request forgery (CSRF) vulnerabilities in Apache Archiva 1.0 up to and including 1.2.2, and 1.3.x prior to 1.3.5, allow remote malicious users to hijack the authentication of administrators.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apache archiva 1.1

apache archiva 1.1.1

apache archiva 1.2-m1

apache archiva 1.3

apache archiva 1.1.2

apache archiva 1.1.3

apache archiva 1.2.1

apache archiva 1.2.2

apache archiva 1.1.4

apache archiva 1.2

apache archiva 1.0

apache archiva 1.0.1

apache archiva 1.3.4

apache archiva 1.0.2

apache archiva 1.0.3

apache archiva 1.3.1

apache archiva 1.3.2

apache archiva 1.3.3

Exploits

Apache Archiva versions 130 through 134 suffer from multiple cross site request forgery vulnerabilities Proof of concept findings included ...
Apache Archiva versions 130 through 134 suffer from multiple cross site scripting vulnerabilities Proof of concept findings are included ...
Apache Archiva versions 130 through 134 suffer from a cross site request forgery vulnerability ...