Vulnerabilities > Janetter

DATE CVE VULNERABILITY TITLE RISK
2012-03-19 CVE-2012-1236 Cross-Site Request Forgery (CSRF) vulnerability in Janetter
Multiple cross-site request forgery (CSRF) vulnerabilities in Janetter before 3.3.0.0 (aka 3.3.0) allow remote attackers to hijack the authentication of arbitrary users for requests that (1) tweet, (2) upload an image file, or (3) execute arbitrary commands.
network
janetter CWE-352
6.8
2012-03-19 CVE-2012-0328 Information Exposure vulnerability in Janetter
Janetter before 3.3.0.0 (aka 3.3.0) allows remote attackers to obtain session information for twitter.com web sites via unspecified vectors.
network
low complexity
janetter CWE-200
5.0