CVE-2008-3262
Cross-site request forgery (CSRF) vulnerability in Claroline before 1.8.10 allows remote attackers to change passwords, related to lack of a requirement for the previous password.
Date published : 2008-07-22
http://www.securityfocus.com/archive/1/494539/100/0/threaded
http://sourceforge.net/project/shownotes.php?release_id=613634
