CVE-2012-5622
published 2012-12-18CVE-2012-5622: Cross-site request forgery (CSRF) vulnerability in the management console (openshift-console/app/controllers/application_controller.rb) in OpenShift 0.0.5…
PriorityP426medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
0.66%
48.0th percentile
Cross-site request forgery (CSRF) vulnerability in the management console (openshift-console/app/controllers/application_controller.rb) in OpenShift 0.0.5 allows remote attackers to hijack the authentication of arbitrary users via unspecified vectors.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | openshift | — | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
vendor_redhat6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
openshift-console: CSRF attack
vendor_redhat·2012-12-10·CVSS 6.8
CVE-2012-5622 [MEDIUM] CWE-352 openshift-console: CSRF attack
openshift-console: CSRF attack
Cross-site request forgery (CSRF) vulnerability in the management console (openshift-console/app/controllers/application_controller.rb) in OpenShift 0.0.5 allows remote attackers to hijack the authentication of arbitrary users via unspecified vectors.
GHSA
GHSA-7v88-g335-x4p8: Cross-site request forgery (CSRF) vulnerability in the management console (openshift-console/app/controllers/application_controller
ghsa_unreviewed·2022-05-17
CVE-2012-5622 [MEDIUM] CWE-352 GHSA-7v88-g335-x4p8: Cross-site request forgery (CSRF) vulnerability in the management console (openshift-console/app/controllers/application_controller
Cross-site request forgery (CSRF) vulnerability in the management console (openshift-console/app/controllers/application_controller.rb) in OpenShift 0.0.5 allows remote attackers to hijack the authentication of arbitrary users via unspecified vectors.
No detection rules found.
No public exploits indexed.
http://osvdb.org/88333http://rhn.redhat.com/errata/RHSA-2012-1555.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=883227https://github.com/openshift/origin-server/commit/1ad0d1d792395306b59a34ad7b6e7e89a35d041ehttps://github.com/openshift/origin-server/pull/1009http://osvdb.org/88333http://rhn.redhat.com/errata/RHSA-2012-1555.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=883227https://github.com/openshift/origin-server/commit/1ad0d1d792395306b59a34ad7b6e7e89a35d041ehttps://github.com/openshift/origin-server/pull/1009
2012-12-18
Published