Описание
Sametime is impacted by a Cross Site Request Forgery (CSRF) vulnerability. Some REST APIs in the Sametime Proxy application can allow an attacker to perform malicious actions on the application.
Уязвимые конфигурации
Конфигурация 1Версия до 12.0.2 (исключая)
cpe:2.3:a:hcltech:sametime:*:*:*:*:*:*:*:*
EPSS
Процентиль: 21%
0.00066
Низкий
5.9 Medium
CVSS3
8.8 High
CVSS3
Дефекты
CWE-352
CWE-352
Связанные уязвимости
CVSS3: 5.9
github
почти 2 года назад
Sametime is impacted by a Cross Site Request Forgery (CSRF) vulnerability. Some REST APIs in the Sametime Proxy application can allow an attacker to perform malicious actions on the application.
EPSS
Процентиль: 21%
0.00066
Низкий
5.9 Medium
CVSS3
8.8 High
CVSS3
Дефекты
CWE-352
CWE-352