Impact
The vulnerability is a CSRF bypass in Apache Roller 6.1.5. The framework’s CSRF filters accept a request that omits the required salt token, instead validating against a server‑generated value. An attacker can force a logged‑in user to visit a crafted page, causing the user to perform state‑changing actions under the victim’s authority. This weakness is classified as CWE‑352.
Affected Systems
Apache Software Foundation’s Apache Roller content management system. Version 6.1.5 is affected; upgrading to 6.1.6 or later mitigates the issue.
Risk and Exploitability
The CVSS score of 8.1 indicates a high severity. The EPSS score is not available, so no current exploitation probability can be quantified, and the vulnerability is not in the CISA KEV catalog. The attack requires a remote attacker to host a malicious page that a logged‑in author or administrator visits; no special configuration is needed. The attacker can then trigger any state‑changing request that would normally be protected by a CSRF token.
OpenCVE Enrichment