CVE-2011-4952

Publication date 19 November 2019

Last updated 25 August 2025


Ubuntu priority

Cvss 3 Severity Score

8.8 · High

Score breakdown

Description

cobbler: Web interface lacks CSRF protection when using Django framework

Status

Package Ubuntu Release Status
cobbler 13.04 raring
Fixed 2.2.2-0ubuntu1
12.10 quantal
Fixed 2.2.2-0ubuntu1
12.04 LTS precise
Fixed 2.2.2-0ubuntu1
11.10 oneiric Ignored end of life
11.04 natty Ignored end of life
10.04 LTS lucid Not in release
8.04 LTS hardy Not in release

Severity score breakdown

CVSS version: CVSS v3.0

Base score 8.8 · High

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H


Access our resources on patching vulnerabilities