Multiple cross-site request forgery (CSRF) vulnerabilities in WebCalendar 1.2.0, and other versions before 1.2.5, allow remote attackers to hijack the authentication of administrators for requests that (1) delete an event or (2) ban an IP address from posting via unknown vectors. NOTE: some of these details are obtained from third party information.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2010-02-12T22:00:00

Updated: 2024-08-07T00:52:19.788Z

Reserved: 2010-02-12T00:00:00

Link: CVE-2010-0637

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2010-02-12T22:30:00.610

Modified: 2012-10-13T02:58:03.000

Link: CVE-2010-0637

cve-icon Redhat

No data.