Security
Headlines
HeadlinesLatestCVEs

Headline

Ubuntu Security Notice USN-5121-1

Ubuntu Security Notice 5121-1 - Andre Protas, Richard Cloke, and Andy Nuttall discovered that Mailman did not properly associate cross-site request forgery tokens to specific accounts. A remote attacker could use this to perform a CSRF attack to gain access to another account. Andre Protas, Richard Cloke, and Andy Nuttall discovered that Mailman’s cross-site request forgery tokens for the options page are derived from the admin password. A remote attacker could possibly use this to assist in performing a brute force attack against the admin password. Various other issues were also addressed.

Packet Storm
#csrf#ubuntu

Packet Storm: Latest News

Scapy Packet Manipulation Tool 2.6.1