CVE Database
/

CVE-2016-6578

Back to search

CVE-2016-6578

Published: Jul 13, 2018

Modified: Aug 6, 2024

PUBLISHED

Description

CodeLathe FileCloud, version 13.0.0.32841 and earlier, contains a global cross-site request forgery (CSRF) vulnerability. An attacker can perform actions with the same permissions as a victim user, provided the victim has an active session and is induced to trigger the malicious request.

VendorProductVersions

CodeLathe

FileCloud

affected
13.0.0.32841

Weaknesses (CWE)

References

95426
vdb-entry
x_refsource_BID
VU#865216
third-party-advisory
x_refsource_CERT-VN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now