Cross-site request forgery (CSRF) vulnerability in the GateIn Portal component in JBoss Enterprise Portal Platform 5.2.2 and earlier allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
2013-04-12T22:55:00.950
2025-04-11T00:51:21.963
Deferred
CVSSv2: 6.8 (MEDIUM)
AV:N/AC:M/Au:N/C:P/I:P/A:P
8.6
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | redhat | jboss_enterprise_portal_platform | ≤ 5.2.2 | Yes |
Application | redhat | jboss_enterprise_portal_platform | 4.3.0 | Yes |
Application | redhat | jboss_enterprise_portal_platform | 5.0.0 | Yes |
Application | redhat | jboss_enterprise_portal_platform | 5.0.1 | Yes |
Application | redhat | jboss_enterprise_portal_platform | 5.1.0 | Yes |
Application | redhat | jboss_enterprise_portal_platform | 5.1.1 | Yes |
Application | redhat | jboss_enterprise_portal_platform | 5.2.0 | Yes |
Application | redhat | jboss_enterprise_portal_platform | 5.2.1 | Yes |