Wednesday, September 20, 2017

Cisco Unified Intelligence Center User Interface Cross-Site Request Forgery Vulnerability

A vulnerability in the Cisco Unified Intelligence Center could allow an unauthenticated, remote attacker to execute unwanted actions.

The vulnerability is due to a lack of cross-site request forgery (CSRF) protection. An attacker could exploit this vulnerability by tricking the user of a web application into executing an adverse action.

There are no workarounds that address this vulnerability.

This advisory is available at the following link:
http://ift.tt/2fj2hbe
Security Impact Rating: Medium
CVE: CVE-2017-12253

from Cisco Security Advisory http://ift.tt/2fj2hbe

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.