Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2006-4582
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-4582

Description:
Cross-site request forgery (CSRF) vulnerability in The Address Book 1.04e allows remote attackers to perform unauthorized actions as other users via unspecified vectors, as demonstrated by deleting arbitrary users via the id parameter in a deleteuser action in users.php.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/31251

SAID
  Secunia Advisory: SA21694

OSVDB
  32559

MISC
  http://secunia.com/secunia_research/2006-76/advisory/


Return to the previous page.