Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2016-1607

Multiple cross-site request forgery (CSRF) vulnerabilities in the administrative interface in Novell Filr before 2.0 Security Update 2 allow remote attackers to hijack the authentication of administrators, as demonstrated by reconfiguring time settings via a vaconfig/time request.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.01
EPSS Ranking 75.6%
CVSS Severity
CVSS v3 Score 7.2
CVSS v2 Score 6.5
Products affected by CVE-2016-1607
  • Novell » Filr » Version: 1.2
    cpe:2.3:a:novell:filr:1.2
  • Novell » Filr » Version: 2.0
    cpe:2.3:a:novell:filr:2.0


Contact Us

Shodan ® - All rights reserved