6.8
CVSSv2

CVE-2013-1088

Published: 24/04/2013 Updated: 16/05/2013
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability in Novell iManager 2.7 before SP6 Patch 1 allows remote malicious users to hijack the authentication of arbitrary users by leveraging improper request validation by iManager code deployed within an Apache Tomcat container.

Vulnerable Product Search on Vulmon Subscribe to Product

novell imanager 2.7

novell imanager 2.7.3

novell imanager 2.7.4

novell imanager 2.7.5

novell imanager

novell imanager 2.7.1

novell imanager 2.7.2