Description
|
|
Multiple vulnerabilities have been identified in Amethyst, which could be exploited to conduct cross-site scripting and request forgery attacks. These issues are caused by input validation errors in the administrative interface when processing HTTP requests and user-supplied parameters, which could be exploited by attackers to manipulate certain data (e.g. modify the administrative password) by tricking an administrator into visiting a malicious web page, or execute arbitrary scripting code.
|