CVE-2009-4077
EPSS 0.21%Published: 11/25/2009Modified: 5/29/2026
Also known as:DEBIAN-CVE-2009-4077
Description
Cross-site request forgery (CSRF) vulnerability in Roundcube Webmail 0.2.2 and earlier allows remote attackers to hijack the authentication of unspecified users for requests that send arbitrary emails via unspecified vectors, a different vulnerability than CVE-2009-4076.
Affected packages (1)
- Debian/roundcubefrom 0, < 0.3-1