CVE-2010-3213: CSRF
Cross-site request forgery (CSRF) vulnerability in Microsoft Outlook Web Access (owa/ev.owa) 2007 through SP2 allows remote attackers to hijack the authentication of e-mail users for requests that perform Outlook requests, as demonstrated by setting the auto-forward rule.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-3213?
CVE-2010-3213 has a medium severity rating due to its potential to allow unauthorized access to user accounts.
How do I fix CVE-2010-3213?
To mitigate CVE-2010-3213, it is recommended to apply the latest security updates provided by Microsoft for Outlook Web Access.
What systems are affected by CVE-2010-3213?
CVE-2010-3213 affects Microsoft Outlook Web Access 2007 SP1, 2007, and 2007 SP2.
What kind of attack does CVE-2010-3213 represent?
CVE-2010-3213 represents a cross-site request forgery (CSRF) attack, allowing attackers to execute actions on behalf of authenticated users.
Is user authentication at risk with CVE-2010-3213?
Yes, CVE-2010-3213 allows remote attackers to hijack the authentication of e-mail users, compromising user accounts.