Cross-Site Request Forgery Vulnerabilities in Apache Archiva by Apache
CVE-2011-1026

Currently unrated

Key Information:

Vendor
Apache
Status
Vendor
CVE Published:
2 June 2011

Summary

Multiple cross-site request forgery vulnerabilities exist in Apache Archiva versions 1.0 through 1.2.2, and 1.3.x prior to version 1.3.5. These flaws could allow remote attackers to hijack the authentication of administrators, potentially leading to unauthorized actions within the application.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.