CVE-2012-2564: CSRF
Published Jun 9, 2012
·Updated
Multiple cross-site request forgery (CSRF) vulnerabilities in the administrative interface in Bloxx Web Filtering before 5.0.14 allow remote attackers to hijack the authentication of administrators for requests that perform administrative actions.
Affected Software
1 affected component
Bloxx Web Filtering<=5.0.13
Event History
Jun 9, 2012
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-2564?
CVE-2012-2564 is considered a moderate severity vulnerability due to its potential impact on administrative access.
2
How do I fix CVE-2012-2564?
To fix CVE-2012-2564, upgrade Bloxx Web Filtering to version 5.0.14 or later.
3
What specific vulnerability does CVE-2012-2564 address?
CVE-2012-2564 addresses multiple Cross-Site Request Forgery (CSRF) vulnerabilities in the administrative interface.
4
Who is at risk from CVE-2012-2564?
Administrators using Bloxx Web Filtering versions before 5.0.14 are at risk of CVE-2012-2564.
5
Can CVE-2012-2564 be exploited remotely?
Yes, CVE-2012-2564 can be exploited remotely by attackers to hijack administrator authentication.