CVE
- Id
- 73709
- CVE No.
- CVE-2014-6409
- Status
- Candidate
- Description
- Cross-site request forgery (CSRF) vulnerability in M/Monit 3.3.2 and earlier allows remote attackers to hijack the authentication of administrators for requests that change user passwords via the fullname and password parameters to /admin/users/update.
- Phase
- Assigned (20140915)
- Votes
- None (candidate not yet proposed)
- Comments