Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site request forgery (CSRF) vulnerability in Novell iManager 2.7 before SP6 Patch 1 allows remote attackers to hijack the authentication of arbitrary users by leveraging improper request validation by iManager code deployed within an Apache Tomcat container.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Novell iManager Tomcat 跨站请求伪造漏洞
Vulnerability Description
Novell iManager是美国Novell公司的一款基于WEB的应用程序,可以使用无线设备管理、配置Novell eDirectory对象。Apache Apache Tomcat是美国阿帕奇(Apache)软件基金会下属的Jakarta项目的一款轻量级Web应用服务器,它主要用于开发和调试JSP程序,适用于中小型系统。 Novell iManager SP6 Patch 1之前的2.7版本中使用的Apache Tomcat中存在跨站请求伪造漏洞。该漏洞源于程序未对用户的特定HTTP请求执行有效性验
CVSS Information
N/A
Vulnerability Type
N/A