Vessio NetBill 'accounts/admin/index.php' Cross Site Request Forgery vulnerability

Vessio NetBill is prone to multiple cross-site request-forgery vulnerability.

An attacker can exploit these issues to add accounts and perform unauthorized actions in the context of a logged-in user of the affected application. This may aid in other attacks.

Vessio NetBill 1.2 is vulnerable; other versions may also be affected.


 

Privacy Statement
Copyright 2010, SecurityFocus