Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9w7x-25jx-989f

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

WebFOCUS Business Intelligence 8.0 (SP6) allows a Cross-Site Request Forgery (CSRF) attack against administrative users within the /ibi_apps/WFServlet(.ibfs) endpoint. The impact may be creation of an administrative user. It can also be exploited in conjunction with CVE-2016-9044.

WebFOCUS Business Intelligence 8.0 (SP6) allows a Cross-Site Request Forgery (CSRF) attack against administrative users within the /ibi_apps/WFServlet(.ibfs) endpoint. The impact may be creation of an administrative user. It can also be exploited in conjunction with CVE-2016-9044.

EPSS

Процентиль: 35%
0.00145
Низкий

Связанные уязвимости

CVSS3: 8.8
nvd
больше 5 лет назад

WebFOCUS Business Intelligence 8.0 (SP6) allows a Cross-Site Request Forgery (CSRF) attack against administrative users within the /ibi_apps/WFServlet(.ibfs) endpoint. The impact may be creation of an administrative user. It can also be exploited in conjunction with CVE-2016-9044.

EPSS

Процентиль: 35%
0.00145
Низкий