Exploiting this issue may allow a remote attacker to perform certain actions in the context of an authorized user's session and gain unauthorized access to the affected application; other attacks are also possible.
Vendor Status:
Currently we are not aware of any vendor-supplied patches.