-
Bug
-
Resolution: Won't Fix
-
Highest
-
None
-
3.0
-
None
Cross-site request forgery (CSRF) vulnerability in logout.action in Atlassian Confluence 3.4.6 allows remote attackers to hijack the authentication of administrators, for requests that logout the user via a comment.
Form Name |
---|
logout.action is not protected against XSRF - CVE-2012-6342
-
Bug
-
Resolution: Won't Fix
-
Highest
-
None
-
3.0
-
None
Cross-site request forgery (CSRF) vulnerability in logout.action in Atlassian Confluence 3.4.6 allows remote attackers to hijack the authentication of administrators, for requests that logout the user via a comment.