CVE-2016-4315 | WSO2 Carbon 4.4.5 proxy_ajaxprocessor.jsp cross-site request forgery (EDB-40242 / BID-92473)
A vulnerability was found in WSO2 Carbon 4.4.5. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file server-admin/proxy_ajaxprocessor.jsp. The manipulation leads to cross-site request forgery.
This vulnerability is known as CVE-2016-4315. The attack can be launched remotely. Furthermore, there is an exploit available.