Security Advisory

CVE-2006-4582

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2007-01-03 20:00:00
Last updated 2024-08-07 19:14:47
Assigner flexera
State PUBLISHED

Description

Cross-site request forgery (CSRF) vulnerability in The Address Book 1.04e allows remote attackers to perform unauthorized actions as other users via unspecified vectors, as demonstrated by deleting arbitrary users via the id parameter in a deleteuser action in users.php.