1 results (0.002 seconds)

CVSS: 6.8EPSS: 0%CPEs: 3EXPL: 0

Cross-site request forgery (CSRF) vulnerability in VMware vCloud Director 5.1.x before 5.1.3 allows remote attackers to hijack the authentication of arbitrary users for requests that trigger a logout. Vulnerabilidad cross-site request forgery (CSRF) en VMware vCloud Director 5.1.x anteriores a 5.1.3 permite a atacantes remotos secuestrar la autenticación de usuarios de forma arbitraria para peticiones que desencadenan un logout. • http://osvdb.org/102198 http://www.securityfocus.com/bid/64993 http://www.securitytracker.com/id/1029645 http://www.vmware.com/security/advisories/VMSA-2014-0001.html https://exchange.xforce.ibmcloud.com/vulnerabilities/90560 • CWE-352: Cross-Site Request Forgery (CSRF) •