First published: Sat Jun 09 2012(Updated: )
Multiple cross-site request forgery (CSRF) vulnerabilities in the administrative interface in Bloxx Web Filtering before 5.0.14 allow remote attackers to hijack the authentication of administrators for requests that perform administrative actions.
Credit: cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
Bloxx Web Filtering | <=5.0.13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-2564 is considered a moderate severity vulnerability due to its potential impact on administrative access.
To fix CVE-2012-2564, upgrade Bloxx Web Filtering to version 5.0.14 or later.
CVE-2012-2564 addresses multiple Cross-Site Request Forgery (CSRF) vulnerabilities in the administrative interface.
Administrators using Bloxx Web Filtering versions before 5.0.14 are at risk of CVE-2012-2564.
Yes, CVE-2012-2564 can be exploited remotely by attackers to hijack administrator authentication.