Apache Archiva Cross-Site Request Forgery Issue

  Bookmark
 and Share

Apache Archiva is data repository management software. Apache Archiva is exposed to a cross-site request forgery issue because the application does not properly validate the origin of requests. The following versions are affected: Archiva versions 1.0 through 1.0.3, Archiva versions 1.1 through 1.1.4, Archiva versions 1.2 through 1.2.2, Archiva versions 1.3 through 1.3.1

Ref: http://www.securityfocus.com/bid/45095

10.49.19 - CVE: CVE-2010-3449
Platform: Cross Platform