Description
OpenMage LTS before versions 19.4.6 and 20.0.2 allows attackers to circumvent the `fromkey protection` in the Admin Interface and increases the attack surface for Cross Site Request Forgery attacks. This issue is related to Adobe's CVE-2020-9690. It is patched in versions 19.4.6 and 20.0.2.
Remediation
References
Related Vulnerabilities
Oracle JRE CVE-2019-2983 Vulnerability (CVE-2019-2983)
Apache Traffic Server Improper Input Validation Vulnerability (CVE-2018-1318)
Oracle Database Server CVE-2006-0266 Vulnerability (CVE-2006-0266)
PostgreSQL Improper Access Control Vulnerability (CVE-2016-0768)
WordPress Plugin Cryptocurrency Widgets-Price Ticker & Coins List Security Bypass (2.4)