High severity8.8NVD Advisory· Published Nov 19, 2019· Updated Jun 16, 2026
CVE-2011-4952
CVE-2011-4952
Description
cobbler: Web interface lacks CSRF protection when using Django framework
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
cobblerPyPI | < 2.6.0 | 2.6.0 |
Affected products
3cpe:2.3:a:cobblerd:cobbler:-:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:cobblerd:cobbler:-:*:*:*:*:*:*:*
- (no CPE)range: 2011-09-28
Patches
Vulnerability mechanics
References
8- www.openwall.com/lists/oss-security/2012/04/12/10nvdMailing ListThird Party AdvisoryWEB
- access.redhat.com/security/cve/cve-2011-4952nvdThird Party AdvisoryWEB
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party AdvisoryWEB
- github.com/advisories/GHSA-9fqr-pqc9-f7pjghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2011-4952ghsaADVISORY
- security-tracker.debian.org/tracker/CVE-2011-4952nvdThird Party AdvisoryWEB
- github.com/cobbler/cobbler/commit/18eb1c06779b37d89dfb2962a08236dd1bab24a6ghsaWEB
- github.com/cobbler/cobbler/commit/4bee30b4086a8d845bea5d39d6f2cba1f4a396aaghsaWEB
News mentions
0No linked articles in our index yet.