CVE-2013-4555

Publication date

2013-11-15 18:16:00

Family

redhat

State

PUBLISHED

Description

Cross-site request forgery (CSRF) vulnerability in ecrire/action/logout.php in SPIP before 2.1.24 allows remote attackers to hijack the authentication of arbitrary users for requests that logout the user via unspecified vectors.