Bugzilla Cross-Site Request Forgery (CSRF) Vulnerability in post_bug.cgi

Bugzilla Cross-Site Request Forgery (CSRF) Vulnerability in post_bug.cgi

CVE-2011-3668 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:P

Cross-site request forgery (CSRF) vulnerability in post_bug.cgi in Bugzilla 2.x, 3.x, and 4.x before 4.2rc1 allows remote attackers to hijack the authentication of arbitrary users for requests that create bug reports.

Learn more about our User Device Pen Test.