01642 06 11 11 Arrange Call

CSRF Vulnerabilities in JAMF Casper Suite Allow Authentication Hijacking

CVE-2012-4051 · MEDIUM

CVE-2012-4051

Multiple cross-site request forgery (CSRF) vulnerabilities in editAccount.html in the JAMF Software Server (JSS) interface in JAMF Casper Suite before 8.61 allow remote attackers to hijack the authentication of administrators for requests that (1) create user accounts or (2) change passwords via a Save action.

Learn more about our Cis Benchmark Audit For Server Software.