CVE-2014-7190
Openfiler 2.99.1 - CSRF
Title source: llmDescription
Multiple cross-site request forgery (CSRF) vulnerabilities in Openfiler 2.99.1 allow remote attackers to hijack the authentication of administrators for requests that (1) shutdown or (2) reboot the server via a request to admin/system_shutdown.html.
Exploits (1)
Scores
EPSS
0.0020
EPSS Percentile
42.0%
Details
CWE
CWE-352
Status
published
Products (1)
openfiler/openfiler
2.99.1
Published
Sep 30, 2014
Tracked Since
Feb 18, 2026