Less critical

Brekeke PBX Cross-Site Request Forgery Vulnerability

-

Release Date:  2010-05-27    Last Update:  2010-09-02    Views:  3,743

Secunia Advisory SA39952

Where:

You need to log in to view this

Impact:

You need to log in to view this

Solution Status:

You need to log in to view this

Software:

You need to log in to view this

CVE Reference(s):

You need to log in to view this

Description


John Leitch has discovered a vulnerability in Brekeke PBX, which can be exploited by malicious people to conduct cross-site request forgery attacks


You need to log in to the Secunia Community to view the full description of this advisory

If you are not a member of the Secunia community, you can sign up here for free.

Do you have additional information related to this advisory?

Please provide information about patches, mitigating factors, new versions, exploits, faulty patches, links, and other relevant data by posting comments to this Advisory. You can also send this information to vuln@secunia.com

Subject: Brekeke PBX Cross-Site Request Forgery Vulnerability

User Message
shin.yamade RE: Brekeke PBX Cross-Site Request Forgery Vulnerability
Member 20th Sep, 2010 21:55
Score: 0
Posts: 1
User Since: 20th Sep 2010
System Score: N/A
Location: US
Last edited on 20th Sep, 2010 21:55
The reported issue has been fixed with version 2.4.6.7 (or later versions). Please upgrade your Brekeke PBX with our free minor updates. Here is the instruction for how to update your Brekeke PBX: http://wiki.brekeke.com/wiki/BPBX_Minor_Update

Let us know if you have any questions!

Shin
Was this reply relevant?
+0
-0

-

You must be logged in to post a comment.