Oval Definition:oval:com.ubuntu.precise:def:20112191000
Revision Date:2011-10-06Version:1
Title:CVE-2011-2191 on Ubuntu 12.04 LTS (precise) - medium.
Description:Cross-site request forgery (CSRF) vulnerability in Cherokee-admin in Cherokee before 1.2.99 allows remote attackers to hijack the authentication of administrators for requests that insert cross-site scripting (XSS) sequences, as demonstrated by a crafted nickname field to vserver/apply.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2011-2191
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND The 'cherokee' package in precise is affected and needs fixing.
  • BACK