CVE

Id
42263  
CVE No.
CVE-2009-4828  
Status
Candidate  
Description
Cross-site request forgery (CSRF) vulnerability in administration/admins.php in Ad Manager Pro (aka AdManagerPro) 3.0 allows remote attackers to hijack the authentication of administrators for requests that create new administrative users via an admin_created action. NOTE: some of these details are obtained from third party information.  
Phase
Assigned (20100427)  
Votes
None (candidate not yet proposed)  
Comments