Multiple cross-site request forgery (CSRF) vulnerabilities in FreePBX 2.5.1, and other 2.4.x, 2.5.x, and pre-release 2.6.x versions, allow remote attackers to hijack the authentication of admins for requests that create a new admin account or have unspecified other impact.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2009-05-28T14:00:00Z
Updated: 2024-09-17T00:26:13.030Z
Reserved: 2009-05-28T00:00:00Z
Link: CVE-2009-1802
Vulnrichment
No data.
NVD
Status : Modified
Published: 2009-05-28T14:30:00.377
Modified: 2024-11-21T01:03:24.860
Link: CVE-2009-1802
Redhat
No data.