Cross-site request forgery (CSRF) vulnerability in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.21, 3.6.x before 3.6.12, and 4.x before 4.0.2 allows remote attackers to hijack the authentication of arbitrary users by leveraging knowledge of a password and composing requests that perform SWAT actions.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2013-02-02T20:00:00
Updated: 2024-08-06T14:18:09.618Z
Reserved: 2012-12-06T00:00:00
Link: CVE-2013-0214
Vulnrichment
No data.
NVD
Status : Modified
Published: 2013-02-02T20:55:03.147
Modified: 2024-11-21T01:47:04.767
Link: CVE-2013-0214
Redhat