6.8
CVSSv2

CVE-2014-8144

Published: 31/12/2014 Updated: 08/09/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability in doorkeeper prior to 1.4.1 allows remote malicious users to hijack the authentication of unspecified victims for requests that read a user OAuth authorization code via unknown vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

doorkeeper project doorkeeper