Unrated severityNVD Advisory· Published Jul 22, 2008· Updated Apr 23, 2026
CVE-2008-3262
CVE-2008-3262
Description
Cross-site request forgery (CSRF) vulnerability in Claroline before 1.8.10 allows remote attackers to change passwords, related to lack of a requirement for the previous password.
Affected products
27cpe:2.3:a:claroline:claroline:*:*:*:*:*:*:*:*+ 26 more
- cpe:2.3:a:claroline:claroline:*:*:*:*:*:*:*:*range: <=1.8.9
- cpe:2.3:a:claroline:claroline:1.2:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.3:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.4:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.5:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.5.3:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.5.4:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.6:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.6_beta:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.6_rc1:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.7:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.7.1:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.7.2:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.7.3:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.7.4:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.7.5:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.7.6:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.7.7:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.8.7:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.8.8:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.8.0:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.8.1:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.8.2:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.8.3:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.8.4:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.8.5:*:*:*:*:*:*:*
- cpe:2.3:a:claroline:claroline:1.8.6:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- secunia.com/advisories/31116nvdVendor Advisory
- securityreason.com/securityalert/4020nvd
- sourceforge.net/project/shownotes.phpnvd
- wiki.claroline.net/index.php/Changelog_1.8.xnvd
- www.securityfocus.com/archive/1/494539/100/0/threadednvd
- exchange.xforce.ibmcloud.com/vulnerabilities/43854nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/43974nvd
News mentions
0No linked articles in our index yet.