Difference between revisions of "Cross-Site-Request Forgery (CSRF)"

From Embedded Lab Vienna for IoT & Security
Jump to navigation Jump to search
(Redirected page to Basic:Cross-Site-Request-Forgery)
Tag: New redirect
 
(Removed redirect to Basic:Cross-Site-Request-Forgery)
Tag: Removed redirect
Line 1: Line 1:
#redirect[[Basic:Cross-Site-Request-Forgery]]
[[Category:Basic]]
 
Victims are executing actions unwillingly on Webapplications they are authenticated to. Some of those actions are
* changing password
* changing email-addresse
* changing user-role
* create account
* transfer money

Revision as of 16:48, 28 December 2020


Victims are executing actions unwillingly on Webapplications they are authenticated to. Some of those actions are

  • changing password
  • changing email-addresse
  • changing user-role
  • create account
  • transfer money