CVE-2013-6028

Publication date

2014-01-12 15:00:00

Family

certcc

State

PUBLISHED

Description

Multiple cross-site request forgery (CSRF) vulnerabilities in Atmail Webmail Server before 7.2 allow remote attackers to hijack the authentication of administrators for requests that (1) add user accounts, (2) modify user accounts, (3) delete user accounts, or (4) stop the products service.