First published: Thu Jul 12 2012(Updated: )
Cross-site request forgery (CSRF) vulnerability in eXtplorer 2.1 RC3 and earlier allows remote attackers to hijack the authentication of administrators for requests that add an administrator account via an adduser admin action.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla Explorer | <=2.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-3362 is considered a high severity vulnerability due to its potential for unauthorized administrative account creation.
To fix CVE-2012-3362, update eXtplorer to version 2.1 RC4 or later, which addresses the cross-site request forgery issue.
CVE-2012-3362 is a cross-site request forgery (CSRF) vulnerability that allows attackers to hijack administrator authentication.
CVE-2012-3362 affects users of eXtplorer versions 2.1 RC3 and earlier, specifically those with administrative privileges.
Yes, CVE-2012-3362 can lead to further exploitation by allowing attackers to create unauthorized administrator accounts.