[jboss-jira] [JBoss JIRA] (JBJMX-115) CSRF vulnerability

Aurélien Leboulanger (JIRA) issues at jboss.org
Fri Apr 11 03:10:14 EDT 2014


Aurélien Leboulanger created JBJMX-115:
------------------------------------------

             Summary: CSRF vulnerability
                 Key: JBJMX-115
                 URL: https://issues.jboss.org/browse/JBJMX-115
             Project: JBoss JMX
          Issue Type: Enhancement
            Reporter: Aurélien Leboulanger


i found no information about a potential remedy of this CSRF vulnerability.

CVE-2007-1157 : Cross-site request forgery (CSRF) vulnerability in jmx-console/HtmlAdaptor in JBoss allows remote attackers to perform privileged actions as administrators via certain MBean operations.


--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira



More information about the jboss-jira mailing list