Cross-site request forgery (CSRF) vulnerability in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.21, 3.6.x before 3.6.12, and 4.x before 4.0.2 allows remote attackers to hijack the authentication of arbitrary users by leveraging knowledge of a password and composing requests that perform SWAT actions.
Metrics
Affected Vendors & Products
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published: 2013-02-02T20:00:00.000Z
Updated: 2024-08-06T14:18:09.618Z
Reserved: 2012-12-06T00:00:00.000Z
Link: CVE-2013-0214
No data.
Status : Deferred
Published: 2013-02-02T20:55:03.147
Modified: 2025-04-11T00:51:21.963
Link: CVE-2013-0214