IBM WebSphere Application Server Administration Console Cross Site Request Forgery Vulnerability
14 Jul. 2012
Summary
IBM WebSphere Application Server is prone to a cross-site request-forgery vulnerability..
Credit:
The original article can be found at: http://www.securityfocus.com/bid/48305 .
The information has been provided by Luigi Auriemma, Donato Ferrante, Carsten Eiram of Secunia Research and binaryproof .
Vulnerable Systems:Red Hat Red Hat Network Satellite Server 5.4
*IBM Websphere Application Server 7.0 .11 and prior
Exploiting this issue may allow a remote attacker to perform certain actions in the context of an authorized user's session and gain unauthorized access to the affected application; other attacks are also possible.
IBM WebSphere Application Server 7.0.0.11 and 7.0.0.13 are vulnerable; other versions may also be affected.