Cross-site request forgery (CSRF) vulnerability in modules/config/admin_utente.php in GAzie 5.20 and earlier allows remote attackers to hijack the authentication of administrators for requests that change account information via an update action, as demonstrated by changing the password.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published: 2012-02-21T00:00:00
Updated: 2024-08-06T18:53:36.275Z
Reserved: 2012-02-20T00:00:00
Link: CVE-2012-1220

No data.

Status : Modified
Published: 2012-02-21T13:31:47.047
Modified: 2024-11-21T01:36:41.690
Link: CVE-2012-1220

No data.