6.8
CVSSv2

CVE-2012-4280

Published: 13/08/2012 Updated: 14/08/2012
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple cross-site request forgery (CSRF) vulnerabilities in admin/agenteditor.php in Free Realty 3.1-0.6 allow remote malicious users to hijack the authentication of administrators for requests that (1) add an agent via an addagent action or (2) modify an agent.

Vulnerable Product Search on Vulmon Subscribe to Product

rwcinc free realty 3.1-0.6

Exploits

Title: ====== Free Reality v31-06 - Multiple Web Vulnerabilities Date: ===== 2012-05-07 References: =========== wwwvulnerability-labcom/get_contentphp?id=513 VL-ID: ===== 513 Common Vulnerability Scoring System: ==================================== 75 Introduction: ============= Free Realty is primarily designed for real esta ...